--------------- QuickDiag | g3n-h@ckm@n | V5_04.10.19.1 --------------- ----- XP | Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- - Start 07/10/2019 11:57:15 Updated 04/10/2019 | 23:00 (GMT) by g3n-h@ckm@n Contact : http://www.sosvirus.net/ Time Zone : (UTC+01:00) Bruxelles, Copenhague, Madrid, Paris [Timothée (Administrator)] - [TIMO] (S-1-5-21-364868280-2578744981-2741750218-1000) System: Microsoft Windows 10 Professionnel - - (10.0.17763) - BuildType: Multiprocessor Free - OSLanguage: 1036 (040c) -> (1809) System: AutoReboot: True - DebugFilePath: %SystemRoot%\MEMORY.DMP - KernelDumpOnly: False - OverwriteExistingDebugFile: True - WriteDebugInfo: True - WriteToSystemLog: True Boot : Microsoft Windows 10 Professionnel|C:\WINDOWS|\Device\Harddisk0\Partition2 Boot : Normal boot PC: MS-7823 - MSI - IdNumber: To be filled by O.E.M. - UUID: 00000000-0000-0000-0000-448A5BD50E32 Processor : X64 - 3200 Mhz - Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz BIOS Date: 07/20/14 17:21:56 Ver: V3.8B0 - en|US|iso8859-1 - American Megatrends Inc. - S/N: To be filled by O.E.M. - V3.8 - ALASKA - 1072009 CoreTemp : 29.8 Celsius ----------| Quick ---------- | SoundDevice AMD High Definition Audio Device - Status: OK - Manufacturer: Advanced Micro Devices - PNPDeviceID: HDAUDIO\FUNC_01&VEN_1002&DEV_AA01&SUBSYS_00AA0100&REV_1003\5&2AC5395B&0&0001 Realtek High Definition Audio - Status: OK - Manufacturer: Realtek - PNPDeviceID: HDAUDIO\FUNC_01&VEN_10EC&DEV_0892&SUBSYS_1462D823&REV_1003\4&2AAE7760&0&0001 VB-Audio Virtual Cable - Status: OK - Manufacturer: VB-Audio Software - PNPDeviceID: ROOT\MEDIA\0000 ---------- | Video AMD Radeon (TM) R9 200 Series - Resolution: 1920x1080 - Colors: 4294967296 - RefreshRate: 59 - 32 Bits Per Pixel - DeviceID: VideoController1 - Drivers: C:\WINDOWS\System32\DriverStore\FileRepository\c0337288.inf_amd64_3c3211f00f323cb5\B337205\aticfx64.dll,C:\WINDOWS\System32\DriverStore\FileRepository\c0337288.inf_amd64_3c3211f00f323cb5\B337205\aticfx64.dll,C:\WINDOWS\System32\DriverStore\FileRepository\c0337288.inf_amd64_3c3211f00f323cb5\B337205\aticfx64.dll,C:\WINDOWS\System32\DriverStore\FileRepository\c0337288.inf_amd64_3c3211f00f323cb5\B337205\amdxc64.dll - PNPDeviceID: PCI\VEN_1002&DEV_6811&SUBSYS_E271174B&REV_00\4&85008C2&0&0008 - AdapterCompatibility: Advanced Micro Devices, Inc. - RAM: -2147483648 Inegrated Video Chipset DeviceName: AMD Radeon (TM) R9 200 Series - DriverVersion: 8.14.1.6564 - SpecificationVersion: 1025 ---------- | Codecs c:\windows\system32\imaadp32.acm - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 36680 - Manufacturer: Microsoft Corporation - Status: OK c:\windows\system32\msadp32.acm - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 34800 - Manufacturer: Microsoft Corporation - Status: OK c:\windows\system32\msyuv.dll - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 27648 - Manufacturer: Microsoft Corporation - Status: OK c:\windows\system32\tsbyuv.dll - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 16896 - Manufacturer: Microsoft Corporation - Status: OK c:\windows\system32\frapsv64.dll - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 71680 - Manufacturer: Beepa P/L - Status: OK c:\windows\system32\iyuv_32.dll - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 54272 - Manufacturer: Microsoft Corporation - Status: OK c:\windows\system32\msvidc32.dll - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 39424 - Manufacturer: Microsoft Corporation - Status: OK c:\windows\system32\msrle32.dll - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 17920 - Manufacturer: Microsoft Corporation - Status: OK c:\windows\system32\msgsm32.acm - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 42904 - Manufacturer: Microsoft Corporation - Status: OK c:\windows\system32\l3codeca.acm - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 92672 - Manufacturer: Fraunhofer Institut Integrierte Schaltungen IIS - Status: OK c:\windows\system32\msg711.acm - ClassName: Win32_CodecFile - FSName: NTFS - FileSize: 25824 - Manufacturer: Microsoft Corporation - Status: OK ---------- | CPU CPU #1 value:0 % CPU #2 value:0 % CPU #3 value:0 % CPU #4 value:0 % Total Overall CPU Usage value:0 % ---------- | Memory RAM = Total (MB) : 8315 | Free (MB) : 3399 Pagefile = Total (MB) : 13558 | Free (MB) : 7278 Virtual = Total (MB) : 4194 | Free (MB) : 3906 ---------- | SID Users Administrateur : [S-1-5-21-364868280-2578744981-2741750218-500] DefaultAccount : [S-1-5-21-364868280-2578744981-2741750218-503] Invité : [S-1-5-21-364868280-2578744981-2741750218-501] Timothée : [S-1-5-21-364868280-2578744981-2741750218-1000] WDAGUtilityAccount : [S-1-5-21-364868280-2578744981-2741750218-504] Administrateurs : [S-1-5-32-544] Administrateurs Hyper-V : [S-1-5-32-578] Duplicateurs : [S-1-5-32-552] IIS_IUSRS : [S-1-5-32-568] Invités : [S-1-5-32-546] Lecteurs des journaux d’événements : [S-1-5-32-573] Opérateurs d'assistance de contrôle d'accès : [S-1-5-32-579] Opérateurs de chiffrement : [S-1-5-32-569] Opérateurs de configuration réseau : [S-1-5-32-556] Opérateurs de sauvegarde : [S-1-5-32-551] System Managed Accounts Group : [S-1-5-32-581] Utilisateurs : [S-1-5-32-545] Utilisateurs avec pouvoir : [S-1-5-32-547] Utilisateurs de gestion à distance : [S-1-5-32-580] Utilisateurs de l’Analyseur de performances : [S-1-5-32-558] Utilisateurs du Bureau à distance : [S-1-5-32-555] Utilisateurs du journal de performances : [S-1-5-32-559] Utilisateurs du modèle COM distribué : [S-1-5-32-562] ---------- | Drives C:\ -> [Fixed] | [] | Total : 930.55 Go | Free : 113.34 Go -> NTFS [SATA] Disk Usage Information [1 total Physical Disks] Physical Drive #0 [C:] : Read:0 bytes/sec, Written:0 bytes/sec Max Read:0 bytes/sec, Max Write:0 bytes/sec Overall - Read Maximum:0 bytes/sec, Write Maximum:0 bytes/sec DeviceID: \\.\PHYSICALDRIVE0 - Status: OK - IDE - Fixed hard disk media - 3 Part. - PnPID : SCSI\DISK&VEN_ST1000DX&PROD_001-1CM162\4&5B5F2F2&0&000000 ---------- | Windows updates - Activation - License W.A.T : :) Test 1 : Windows Is Activated Volume License ---------- | Browsers IE : 11.0.17763.592 (© Microsoft Corporation. Tous droits réservés.) FF : 37.0.1.5570 (©Firefox and Mozilla Developers; available under the MPL 2 license.) GC : 77.0.3865.90 (Copyright 2019 Google LLC.) OP : 63.0.3368.94 (Copyright Opera Software 2019) Default : "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "" ---------- | FlashPlayer FlashPlayer ActiveX : 32.0.0.207 FlashPlayer Plugin : 32.0.0.255 ---------- | Security FW : WINDOWS Firewall WMI : OK WU: Windows Update Service [Manual(3)] = Running AS: Windows Defender [Auto(2)] = Running WMI: Windows Management Instrumentation [Auto(2)] = Running ---------- | Running processes 492 | [Owner : Système | Parent : 4(System) | ?????] - (.Microsoft Corporation - Gestionnaire de sessions Windows.) - (10.0.17763.292) = C:\Windows\System32\smss.exe [15/04/2019 17:48:05] CPU Usage:0 % 736 | [Owner : Système | Parent : 724() | ?????] - (.Microsoft Corporation - Processus d’exécution client-serveur.) - (10.0.17763.1) = C:\Windows\System32\csrss.exe [15/09/2018 09:28:45] CPU Usage:0 % 856 | [Owner : Système | Parent : 724() | ?????] - (.Microsoft Corporation - Application de démarrage de Windows.) - (10.0.17763.1) = C:\Windows\System32\wininit.exe [15/09/2018 09:28:45] CPU Usage:0 % 980 | [Owner : Système | Parent : 856(wininit.exe) | ?????] - (.Microsoft Corporation - Applications Services et Contrôleur.) - (10.0.17763.652) = C:\Windows\System32\services.exe [23/08/2019 03:45:55] CPU Usage:0 % 1008 | [Owner : Système | Parent : 856(wininit.exe) | 10.25 Mo] - (.Microsoft Corporation - Local Security Authority Process.) - (10.0.17763.1) = C:\Windows\System32\lsass.exe [15/09/2018 09:28:46] CPU Usage:0 % 904 | [Owner : UMFD-0 | Parent : 856(wininit.exe) | 0.87 Mo] - (.Microsoft Corporation - Usermode Font Driver Host.) - (10.0.17763.615) = C:\Windows\System32\fontdrvhost.exe [09/07/2019 20:37:34] CPU Usage:0 % 68 | [Owner : Système | Parent : 980(services.exe) | 0.72 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1076 | [Owner : Système | Parent : 980(services.exe) | 16.83 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1132 | [Owner : SERVICE RÉSEAU | Parent : 980(services.exe) | 11.18 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1176 | [Owner : Système | Parent : 980(services.exe) | 3.98 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1344 | [Owner : Système | Parent : 980(services.exe) | 6.17 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1368 | [Owner : Système | Parent : 980(services.exe) | 5.16 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1396 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 3.42 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1472 | [Owner : Système | Parent : 980(services.exe) | 2.29 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1600 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 13.36 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1652 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 4.83 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1684 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 3.58 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1732 | [Owner : Système | Parent : 980(services.exe) | 8.64 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1756 | [Owner : Système | Parent : 980(services.exe) | 5.84 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1788 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 3.11 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1832 | [Owner : Système | Parent : 980(services.exe) | 2.74 Mo] - (.Garena Online - Garena platform service.) - (2018.1.18.2047) = C:\Program Files (x86)\Garena\Garena\2.0.1801.1820\gxxsvc.exe [18/01/2018 15:03:54] CPU Usage:0 % 1856 | [Owner : Système | Parent : 980(services.exe) | 4.87 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1916 | [Owner : SERVICE RÉSEAU | Parent : 980(services.exe) | 8.42 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 1960 | [Owner : Système | Parent : 980(services.exe) | 5.12 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2040 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 5.52 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:2 % 2252 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 2.05 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2344 | [Owner : Système | Parent : 980(services.exe) | 13.01 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2396 | [Owner : Système | Parent : 980(services.exe) | 1.62 Mo] - (.AMD - AMD External Events Service Module.) - (25.20.15003.5010) = C:\Windows\System32\DriverStore\FileRepository\c0337288.inf_amd64_3c3211f00f323cb5\B337205\atiesrxx.exe [19/12/2018 17:43:02] CPU Usage:0 % 2512 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 3.92 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2708 | [Owner : Système | Parent : 980(services.exe) | 106.63 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2716 | [Owner : Système | Parent : 980(services.exe) | 1.79 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2724 | [Owner : Système | Parent : 980(services.exe) | 4.71 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2732 | [Owner : Système | Parent : 980(services.exe) | 4.44 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2792 | [Owner : Système | Parent : 980(services.exe) | 4.87 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2800 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 3.86 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3020 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 8.19 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2320 | [Owner : Système | Parent : 980(services.exe) | 10.93 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2872 | [Owner : SERVICE LOCAL | Parent : 3020(svchost.exe) | 20.13 Mo] - (.Microsoft Corporation - Isolation graphique de périphérique audio Windows.) - (10.0.17763.557) = C:\Windows\System32\audiodg.exe [18/06/2019 17:38:21] CPU Usage:0 % 3188 | [Owner : SERVICE RÉSEAU | Parent : 980(services.exe) | 7.66 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3196 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 2.85 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3204 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 5.56 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3284 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 12.06 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3600 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 4.92 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3652 | [Owner : Système | Parent : 980(services.exe) | 7.61 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3704 | [Owner : Système | Parent : 980(services.exe) | 7.03 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3748 | [Owner : Système | Parent : 980(services.exe) | 4.26 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3952 | [Owner : Système | Parent : 980(services.exe) | 9.5 Mo] - (.Microsoft Corporation - Application sous-système spouleur.) - (10.0.17763.615) = C:\Windows\System32\spoolsv.exe [09/07/2019 20:37:08] CPU Usage:0 % 3988 | [Owner : SERVICE RÉSEAU | Parent : 980(services.exe) | 3.17 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4040 | [Owner : Système | Parent : 980(services.exe) | 1.81 Mo] - (.Cambridge Silicon Radio Limited - BtSwitcherService.) - (2.1.63.0) = C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe [22/03/2012 22:11:00] CPU Usage:0 % 4048 | [Owner : Système | Parent : 980(services.exe) | 3.44 Mo] - (.Cambridge Silicon Radio Limited - Csr Bluetooth Service.) - (2.1.63.0) = C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe [22/03/2012 22:11:28] CPU Usage:0 % 4068 | [Owner : SERVICE RÉSEAU | Parent : 980(services.exe) | 5.68 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4076 | [Owner : Système | Parent : 980(services.exe) | 3.09 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4084 | [Owner : Système | Parent : 980(services.exe) | 15.72 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3352 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 27.62 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3500 | [Owner : Système | Parent : 980(services.exe) | 1.26 Mo] - (.Seiko Epson Corporation - Epson Scanner Service (64bit).) - (1.1.0.1) = C:\Windows\System32\escsvc64.exe [20/03/2016 13:12:20] CPU Usage:0 % 3464 | [Owner : Système | Parent : 980(services.exe) | 3.17 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 3456 | [Owner : Système | Parent : 980(services.exe) | 1.79 Mo] - (.MSI - Super Charger Service.) - (1.2.24.0) = C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe [22/10/2014 09:49:55] CPU Usage:0 % 3348 | [Owner : Système | Parent : 980(services.exe) | 6.1 Mo] - (.MICRO-STAR INTERNATIONAL CO., LTD. - MSI_Trigger_Service.) - (1.0.9.0) = C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [22/10/2014 09:45:00] CPU Usage:0 % 3240 | [Owner : Système | Parent : 980(services.exe) | 1.11 Mo] - (.Logitech Inc. - Logitech Surround Sound Service.) - (9.2.65.0) = C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [05/10/2018 10:43:58] CPU Usage:0 % 4128 | [Owner : Système | Parent : 980(services.exe) | ?????] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4168 | [Owner : Système | Parent : 980(services.exe) | 1.54 Mo] - (.Plantronics, Inc. - Plantronics Software.) - (3.8.51454.38364) = C:\Program Files (x86)\Plantronics\Spokes3G\SpokesUpdateService.exe [07/07/2016 02:25:40] CPU Usage:0 % 4188 | [Owner : Système | Parent : 980(services.exe) | 1.18 Mo] - (.Razer Inc. - RzKLService.exe.) - (1.2.0.2) = C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [31/12/2014 20:11:03] CPU Usage:0 % 4196 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 1.09 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4204 | [Owner : Système | Parent : 980(services.exe) | 7.12 Mo] - (.- GameScannerService.) - (1.0.6.2849) = C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [14/03/2018 21:13:17] CPU Usage:0 % 4244 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 7.16 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4252 | [Owner : Système | Parent : 980(services.exe) | 1.6 Mo] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - (2.5.11.0) = C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [28/06/2017 16:14:56] CPU Usage:0 % 4352 | [Owner : Système | Parent : 980(services.exe) | 0.99 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4380 | [Owner : Système | Parent : 980(services.exe) | 13.31 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4416 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 2.6 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4500 | [Owner : SERVICE RÉSEAU | Parent : 980(services.exe) | 1.26 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4572 | [Owner : SERVICE LOCAL | Parent : 4076(svchost.exe) | 11.45 Mo] - (.Microsoft Corporation - Device Association Framework Provider Host.) - (10.0.17763.1) = C:\Windows\System32\dasHost.exe [15/09/2018 09:28:36] CPU Usage:0 % 4636 | [Owner : Système | Parent : 980(services.exe) | ?????] - (.Microsoft Corporation - Antimalware Service Executable.) - (4.18.1909.6) = C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe [04/10/2019 11:29:30] CPU Usage:0 % 4820 | [Owner : Système | Parent : 980(services.exe) | 1.91 Mo] - (.Cambridge Silicon Radio Limited - CSR Bluetooth Audio Service.) - (2.1.63.0) = C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe [22/03/2012 22:11:08] CPU Usage:0 % 4932 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 4.47 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 5016 | [Owner : Système | Parent : 980(services.exe) | 5.66 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 5632 | [Owner : SERVICE RÉSEAU | Parent : 980(services.exe) | ?????] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 5748 | [Owner : Système | Parent : 980(services.exe) | 2.94 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 5892 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 2.4 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 5900 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 4.92 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 5972 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 5.16 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 6580 | [Owner : Système | Parent : 980(services.exe) | 8.57 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 6928 | [Owner : Système | Parent : 980(services.exe) | 2.33 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 7048 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 11.12 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 7532 | [Owner : Système | Parent : 980(services.exe) | 9.82 Mo] - (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - (7.0.17763.652) = C:\Windows\System32\SearchIndexer.exe [23/08/2019 03:45:49] CPU Usage:0 % 7920 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 5.76 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 8220 | [Owner : Système | Parent : 980(services.exe) | ?????] - (.Microsoft Corporation - Windows Security Health Service.) - (4.18.1807.16384) = C:\Windows\System32\SecurityHealthService.exe [23/08/2019 03:45:39] CPU Usage:0 % 8792 | [Owner : Système | Parent : 980(services.exe) | 2.12 Mo] - (.Disc Soft Ltd - Disc Soft Bus Service.) - (10.1.0.74) = C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [18/06/2015 14:57:18] CPU Usage:0 % 8812 | [Owner : Système | Parent : 980(services.exe) | 5.23 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 9780 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | ?????] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 4760 | [Owner : Système | Parent : 980(services.exe) | 3.12 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 11072 | [Owner : Système | Parent : 980(services.exe) | 9.3 Mo] - (.Intel Corporation - IAStorDataSvc.) - (14.10.0.1016) = C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [03/02/2016 14:17:32] CPU Usage:0 % 11220 | [Owner : Système | Parent : 980(services.exe) | 1.26 Mo] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host Interface.) - (10.0.0.1180) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [03/04/2014 16:48:44] CPU Usage:0 % 8428 | [Owner : Système | Parent : 980(services.exe) | 8.22 Mo] - (.Intel Corporation - Intel(R) Local Management Service.) - (10.0.0.1180) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [03/04/2014 16:48:44] CPU Usage:0 % 10588 | [Owner : Système | Parent : 980(services.exe) | ?????] - (.Microsoft Corporation - Service Broker du moniteur d'exécution System Guard.) - (10.0.17763.404) = C:\Windows\System32\SgrmBroker.exe [15/04/2019 17:46:42] CPU Usage:0 % 10976 | [Owner : Système | Parent : 980(services.exe) | 4.27 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 12104 | [Owner : Système | Parent : 980(services.exe) | 4.13 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 9508 | [Owner : Système | Parent : 980(services.exe) | 1.35 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 8072 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 3.15 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 8008 | [Owner : Système | Parent : 980(services.exe) | 5.51 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 784 | [Owner : Système | Parent : 980(services.exe) | ?????] - (.Malwarebytes - Malwarebytes Service.) - (3.2.0.845) = C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [07/10/2019 00:06:59] CPU Usage:0 % 12764 | [Owner : Système | Parent : 12868() | ?????] - (.Microsoft Corporation - Processus d’exécution client-serveur.) - (10.0.17763.1) = C:\Windows\System32\csrss.exe [15/09/2018 09:28:45] CPU Usage:0 % 4796 | [Owner : Système | Parent : 12868() | 4.11 Mo] - (.Microsoft Corporation - Application d’ouverture de session Windows.) - (10.0.17763.1) = C:\Windows\System32\winlogon.exe [15/09/2018 09:28:46] CPU Usage:0 % 4432 | [Owner : UMFD-3 | Parent : 4796(winlogon.exe) | 3.39 Mo] - (.Microsoft Corporation - Usermode Font Driver Host.) - (10.0.17763.615) = C:\Windows\System32\fontdrvhost.exe [09/07/2019 20:37:34] CPU Usage:0 % 10896 | [Owner : DWM-3 | Parent : 4796(winlogon.exe) | 54.69 Mo] - (.Microsoft Corporation - Gestionnaire de fenêtres du Bureau.) - (10.0.17763.1) = C:\Windows\System32\dwm.exe [15/09/2018 09:28:44] CPU Usage:0 % 3088 | [Owner : Système | Parent : 2396(atiesrxx.exe) | 4.23 Mo] - (.AMD - AMD External Events Client Module.) - (25.20.15003.5010) = C:\Windows\System32\DriverStore\FileRepository\c0337288.inf_amd64_3c3211f00f323cb5\B337205\atieclxx.exe [19/12/2018 17:43:02] CPU Usage:0 % 1692 | [Owner : Timothée | Parent : 1856(svchost.exe) | 18.4 Mo] - (.Microsoft Corporation - Shell Infrastructure Host.) - (10.0.17763.1) = C:\Windows\System32\sihost.exe [15/09/2018 09:28:34] CPU Usage:0 % 988 | [Owner : Timothée | Parent : 980(services.exe) | 13.03 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 900 | [Owner : Timothée | Parent : 980(services.exe) | 25.62 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 8932 | [Owner : Timothée | Parent : 1732(svchost.exe) | 6.45 Mo] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (10.0.17763.475) = C:\Windows\System32\taskhostw.exe [04/05/2019 00:57:53] CPU Usage:0 % 6132 | [Owner : Timothée | Parent : 6912() | 103.74 Mo] - (.Microsoft Corporation - Explorateur Windows.) - (10.0.17763.652) = C:\Windows\explorer.exe [23/08/2019 03:45:32] CPU Usage:0 % 10404 | [Owner : Timothée | Parent : 980(services.exe) | 22.9 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 10120 | [Owner : Timothée | Parent : 1076(svchost.exe) | 62.56 Mo] - (.Microsoft Corporation - Windows Shell Experience Host.) - (10.0.17763.557) = C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe [18/06/2019 17:38:38] CPU Usage:0 % 4152 | [Owner : Timothée | Parent : 784(MBAMService.exe) | 10.69 Mo] - (.Malwarebytes - Malwarebytes Tray Application.) - (3.1.0.1840) = C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [07/10/2019 00:06:56] CPU Usage:0 % 8624 | [Owner : Timothée | Parent : 6928(svchost.exe) | 20.16 Mo] - (.Microsoft Corporation - Chargeur CTF.) - (10.0.17763.1) = C:\Windows\System32\ctfmon.exe [15/09/2018 09:28:45] CPU Usage:0 % 10908 | [Owner : Timothée | Parent : 1076(svchost.exe) | 0.2 Mo] - (.Microsoft Corporation - Background Task Host.) - (10.0.17763.1) = C:\Windows\System32\backgroundTaskHost.exe [15/09/2018 09:28:36] CPU Usage:0 % 8488 | [Owner : Timothée | Parent : 1076(svchost.exe) | 0.08 Mo] - (.-.) - (8.51.0.72) = C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe [23/08/2019 12:51:27] CPU Usage:0 % 12552 | [Owner : Timothée | Parent : 1076(svchost.exe) | 0.21 Mo] - (.Microsoft Corporation - SkypeApp.) - (8.51.0.72) = C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.51.72.0_x64__kzf8qxf38zg5c\SkypeApp.exe [23/08/2019 12:51:27] CPU Usage:0 % 1716 | [Owner : Timothée | Parent : 1076(svchost.exe) | 5.72 Mo] - (.-.) - (1.19071.901.0) = C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19071.901.0_x64__8wekyb3d8bbwe\YourPhone.exe [23/08/2019 12:47:48] CPU Usage:0 % 1924 | [Owner : Timothée | Parent : 1076(svchost.exe) | 1.02 Mo] - (.Microsoft Corporation - Host Process for Setting Synchronization.) - (10.0.17763.615) = C:\Windows\System32\SettingSyncHost.exe [09/07/2019 20:37:21] CPU Usage:0 % 12440 | [Owner : Timothée | Parent : 1076(svchost.exe) | 0.25 Mo] - (.-.) - (10.19031.1141.0) = C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe [14/04/2019 01:22:04] CPU Usage:0 % 12844 | [Owner : Timothée | Parent : 980(services.exe) | 4.06 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 9160 | [Owner : Timothée | Parent : 6132(explorer.exe) | 8.16 Mo] - (.Microsoft Corporation - Windows Security notification icon.) - (10.0.17763.1) = C:\Windows\System32\SecurityHealthSystray.exe [15/09/2018 09:28:39] CPU Usage:0 % 7032 | [Owner : Timothée | Parent : 6132(explorer.exe) | 1.83 Mo] - (.Cambridge Silicon Radio Limited - Csr Bluetooth OSD Settings.) - (2.1.63.0) = C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe [22/03/2012 22:12:28] CPU Usage:0 % 2688 | [Owner : Timothée | Parent : 6132(explorer.exe) | 2.81 Mo] - (.Cambridge Silicon Radio Limited - Csr Bluetooth TrayApplication.) - (2.1.63.0) = C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe [22/03/2012 22:12:22] CPU Usage:0 % 1056 | [Owner : Système | Parent : 980(services.exe) | 2.3 Mo] - (.Cambridge Silicon Radio Limited - Bluetooth OBEX Service.) - (2.1.63.0) = C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe [22/03/2012 22:11:16] CPU Usage:0 % 2928 | [Owner : Timothée | Parent : 6132(explorer.exe) | 4.61 Mo] - (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) - (6.68.250.0) = C:\Program Files\Logitech\SetPointP\SetPoint.exe [18/05/2018 03:37:48] CPU Usage:0 % 1560 | [Owner : Timothée | Parent : 2928(SetPoint.exe) | 4.12 Mo] - (.Logitech, Inc. - Logitech KHAL Main Process.) - (5.92.117.0) = C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe [16/05/2018 20:15:56] CPU Usage:0 % 4848 | [Owner : Timothée | Parent : 6132(explorer.exe) | 3.06 Mo] - (.- puush.) - (1.0.0.0) = C:\Program Files (x86)\puush\puush.exe [10/01/2012 14:41:46] CPU Usage:0 % 12492 | [Owner : Timothée | Parent : 1560(KHALMNPR.exe) | 3.36 Mo] - (.Logitech, Inc. - Logi Analytics Client (UNICODE).) - (1.1.168.0) = C:\Program Files\Common Files\LogiShrd\LAClient\laclient.exe [16/05/2018 19:55:26] CPU Usage:0 % 9236 | [Owner : Timothée | Parent : 12492(laclient.exe) | 2.03 Mo] - (.Microsoft Corporation - Hôte de la fenêtre de la console.) - (10.0.17763.404) = C:\Windows\System32\conhost.exe [15/04/2019 17:46:29] CPU Usage:0 % 672 | [Owner : Timothée | Parent : 6132(explorer.exe) | 18.78 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 4544 | [Owner : Timothée | Parent : 3032() | 2.93 Mo] - (.MSI - Super Charger.) - (1.2.25.0) = C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe [22/10/2014 09:49:55] CPU Usage:0 % 4368 | [Owner : Timothée | Parent : 3032() | 28.06 Mo] - (.Razer Inc. - Razer Synapse.) - (2.21.24.1) = C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [17/07/2019 12:42:00] CPU Usage:0 % 9580 | [Owner : Timothée | Parent : 3032() | 11.04 Mo] - (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) - (5.4.5.1) = C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [10/03/2013 19:08:47] CPU Usage:0 % 9304 | [Owner : Timothée | Parent : 6132(explorer.exe) | 4 Mo] - (.- NetgearCUv2 MFC Application.) - (3.7.10.124) = C:\Program Files (x86)\NETGEAR\WN111\wn111.exe [01/04/2008 14:30:50] CPU Usage:0 % 7668 | [Owner : Timothée | Parent : 3032() | 3.82 Mo] - (.SEIKO EPSON CORPORATION - EEventManager Application.) - (3.2.0.0) = C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe [23/07/2015 17:58:54] CPU Usage:0 % 5040 | [Owner : Timothée | Parent : 12516() | 26.84 Mo] - (.Piriform Ltd - CCleaner.) - (5.62.0.7538) = C:\Program Files\CCleaner\CCleaner64.exe [01/10/2019 14:58:46] CPU Usage:0 % 5304 | [Owner : Timothée | Parent : 6132(explorer.exe) | 2.6 Mo] - (.- VistaBroadcomPBN Module.) - (1.0.0.2) = C:\Program Files (x86)\Belkin\F7D4101\V1\PBN.exe [25/11/2009 19:45:22] CPU Usage:0 % 6156 | [Owner : Timothée | Parent : 10160() | 4.91 Mo] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) - (4.5.0.0) = C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe [04/08/2015 03:25:00] CPU Usage:0 % 9696 | [Owner : Timothée | Parent : 6132(explorer.exe) | 13.45 Mo] - (.Mega Limited - MEGAsync.) - (4.2.5.0) = C:\Users\Timothée\AppData\Local\MEGAsync\MEGAsync.exe [04/09/2015 00:25:52] CPU Usage:0 % 1200 | [Owner : Timothée | Parent : 3032() | 3.26 Mo] - (.- USB Device Moniter Program.) - (1.0.0.1) = C:\Program Files (x86)\SPEEDLINK\DECUS Gaming Mouse\Monitor.EXE [09/03/2019 14:05:30] CPU Usage:0 % 6828 | [Owner : Timothée | Parent : 3032() | 1.75 Mo] - (.Power Software Ltd - PowerISO Virtual Drive Manager.) - (7.4.0.0) = C:\Program Files\PowerISO\PWRISOVM.EXE [18/04/2019 04:34:04] CPU Usage:0 % 12328 | [Owner : Timothée | Parent : 3032() | 1.59 Mo] - (.Oracle Corporation - Java Update Scheduler.) - (2.8.221.11) = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [04/07/2019 21:12:52] CPU Usage:0 % 9084 | [Owner : Timothée | Parent : 6156(MOM.exe) | 6.61 Mo] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Host application.) - (4.5.0.0) = C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe [04/08/2015 03:24:56] CPU Usage:0 % 12004 | [Owner : Timothée | Parent : 6132(explorer.exe) | 175.27 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 11080 | [Owner : Timothée | Parent : 12004(chrome.exe) | 2.3 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 10724 | [Owner : Timothée | Parent : 12004(chrome.exe) | 2.2 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 5824 | [Owner : Timothée | Parent : 12004(chrome.exe) | 219.55 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 10216 | [Owner : Timothée | Parent : 12004(chrome.exe) | 33.63 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 6996 | [Owner : Timothée | Parent : 12004(chrome.exe) | 5.26 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 6916 | [Owner : Timothée | Parent : 12004(chrome.exe) | 5.3 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 11488 | [Owner : Timothée | Parent : 12004(chrome.exe) | 97.39 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 9840 | [Owner : Timothée | Parent : 12004(chrome.exe) | 43.12 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 7028 | [Owner : Timothée | Parent : 12004(chrome.exe) | 18.2 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 12996 | [Owner : Timothée | Parent : 12004(chrome.exe) | 33.74 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 8444 | [Owner : Timothée | Parent : 12004(chrome.exe) | 18.16 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 6324 | [Owner : Timothée | Parent : 12004(chrome.exe) | 5.3 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 12716 | [Owner : Timothée | Parent : 12004(chrome.exe) | 5.75 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 7892 | [Owner : Timothée | Parent : 12004(chrome.exe) | 114.42 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 6288 | [Owner : Timothée | Parent : 12004(chrome.exe) | 29.14 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 8628 | [Owner : Timothée | Parent : 12004(chrome.exe) | 28.43 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 13272 | [Owner : Timothée | Parent : 12004(chrome.exe) | 28.55 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 2324 | [Owner : Timothée | Parent : 12004(chrome.exe) | 7.39 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 8184 | [Owner : Timothée | Parent : 12004(chrome.exe) | 29.17 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 6448 | [Owner : Timothée | Parent : 12004(chrome.exe) | 128 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 1084 | [Owner : Timothée | Parent : 12004(chrome.exe) | 5.35 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 10952 | [Owner : Timothée | Parent : 12004(chrome.exe) | 39.57 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 5628 | [Owner : Timothée | Parent : 10448() | 4.45 Mo] - (.Intel Corporation - IAStorIcon.) - (14.10.0.1016) = C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [03/02/2016 14:17:34] CPU Usage:0 % 12284 | [Owner : Timothée | Parent : 12004(chrome.exe) | 118.96 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 1868 | [Owner : Timothée | Parent : 12004(chrome.exe) | 13.08 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 896 | [Owner : Timothée | Parent : 1076(svchost.exe) | 12.27 Mo] - (.-.) - (2019.19051.16210.0) = C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19051.16210.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [09/07/2019 14:11:17] CPU Usage:0 % 5136 | [Owner : Système | Parent : 980(services.exe) | 2.56 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 9648 | [Owner : Timothée | Parent : 12004(chrome.exe) | 84.95 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 9992 | [Owner : Timothée | Parent : 12004(chrome.exe) | 5.35 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 12892 | [Owner : Timothée | Parent : 12004(chrome.exe) | 133.56 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 3084 | [Owner : Système | Parent : 980(services.exe) | 1.88 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 11028 | [Owner : Timothée | Parent : 1732(svchost.exe) | 11.21 Mo] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (10.0.17763.475) = C:\Windows\System32\taskhostw.exe [04/05/2019 00:57:53] CPU Usage:0 % 6976 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 5.33 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 9848 | [Owner : Timothée | Parent : 12004(chrome.exe) | 24.37 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 6544 | [Owner : Timothée | Parent : 12004(chrome.exe) | 124.08 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 12172 | [Owner : Système | Parent : 980(services.exe) | 6.65 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 7960 | [Owner : Timothée | Parent : 12004(chrome.exe) | 66.41 Mo] - (.Google LLC - Google Chrome.) - (77.0.3865.90) = C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [22/10/2014 09:29:43] CPU Usage:0 % 1252 | [Owner : Timothée | Parent : 1076(svchost.exe) | 47.48 Mo] - (.Microsoft Corporation - WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe.) - (10.0.17763.292) = C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe [15/04/2019 17:47:53] CPU Usage:0 % 7948 | [Owner : Timothée | Parent : 1076(svchost.exe) | 38.85 Mo] - (.Microsoft Corporation - Application Frame Host.) - (10.0.17763.1) = C:\Windows\System32\ApplicationFrameHost.exe [15/09/2018 09:28:39] CPU Usage:0 % 12836 | [Owner : Timothée | Parent : 1076(svchost.exe) | 61.24 Mo] - (.Microsoft Corporation - Windows Defender application.) - (10.0.17763.652) = C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe [23/08/2019 03:46:00] CPU Usage:0 % 9816 | [Owner : Timothée | Parent : 1076(svchost.exe) | 10.38 Mo] - (.Microsoft Corporation - COM Surrogate.) - (10.0.17763.1) = C:\Windows\System32\dllhost.exe [15/09/2018 09:28:45] CPU Usage:0 % 6516 | [Owner : Timothée | Parent : 1076(svchost.exe) | 7.7 Mo] - (.Microsoft Corporation - Windows Defender SmartScreen.) - (10.0.17763.529) = C:\Windows\System32\smartscreen.exe [18/06/2019 17:38:30] CPU Usage:0 % 1292 | [Owner : Système | Parent : 980(services.exe) | 6.71 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 9052 | [Owner : Système | Parent : 980(services.exe) | 6.83 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 10668 | [Owner : SERVICE LOCAL | Parent : 980(services.exe) | 6.91 Mo] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17763.1) = C:\Windows\System32\svchost.exe [15/09/2018 09:28:45] CPU Usage:0 % 2540 | [Owner : Timothée | Parent : 6132(explorer.exe) | 61.46 Mo] - (.SosVirus - QuickDiag.) - (4.10.19.1) = C:\Users\Timothée\Desktop\sécurité\QuickDiag.exe [04/10/2019 13:37:59] CPU Usage:0 % 1584 | [Owner : Système | Parent : 1076(svchost.exe) | 8.85 Mo] - (.Microsoft Corporation - WMI Provider Host.) - (10.0.17763.1) = C:\Windows\System32\wbem\WmiPrvSE.exe [15/09/2018 09:28:29] CPU Usage:0 % 5844 | [Owner : SERVICE RÉSEAU | Parent : 1076(svchost.exe) | 9.56 Mo] - (.Microsoft Corporation - WMI Provider Host.) - (10.0.17763.1) = C:\Windows\SysWOW64\wbem\WmiPrvSE.exe [15/09/2018 09:29:00] CPU Usage:0 % ---------- | Locked Applications ---------- | Policy Restrictions ---------- | Explorer.exe Modules (Microsoft Files Whitelisted) (..-..) - (0.0.0.0) -- C:\Windows\System32\InputHost.dll (.Advanced Micro Devices, Inc. .-.aticfx64.dll.) - (25.20.15003.5010) -- C:\WINDOWS\System32\DriverStore\FileRepository\c0337288.inf_amd64_3c3211f00f323cb5\B337205\aticfx64.dll (.Advanced Micro Devices, Inc. .-.atiuxpag.dll.) - (25.20.15003.5010) -- C:\WINDOWS\System32\DriverStore\FileRepository\c0337288.inf_amd64_3c3211f00f323cb5\B337205\atiuxp64.dll (.Advanced Micro Devices, Inc. .-.atidxx64.dll.) - (25.20.15003.5010) -- C:\WINDOWS\System32\DriverStore\FileRepository\c0337288.inf_amd64_3c3211f00f323cb5\B337205\atidxx64.dll (..-..) - (0.0.0.0) -- C:\Windows\ShellExperiences\TileControl.dll (..-..) - (0.0.0.0) -- C:\Windows\ShellComponents\TaskFlowUI.dll (.IvoSoft.-.Adds classic Windows Explorer features.) - (4.1.0.0) -- C:\Program Files\Classic Shell\ClassicExplorer64.dll (.Malwarebytes.-.Malwarebytes.) - (3.0.0.79) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll (..-.DLLReg Module.) - (1.0.0.1) -- C:\Program Files (x86)\Batch Picture Resizer\DLLReg-x64.dll (.Alexander Roshal.-.WinRAR shell extension.) - (5.60.0.0) -- C:\Program Files (x86)\WinRAR\rarext64.dll (.Elaborate Bytes AG.-.CloseTray.) - (5.4.4.0) -- C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll (.Power Software Ltd.-.PowerISOShell DLL.) - (7.4.0.0) -- C:\Program Files\PowerISO\PWRISOSH.DLL (.DivX, LLC.-.DivX Binary File.) - (1.0.0.40) -- C:\Program Files (x86)\Common Files\DivX Shared\DivXShellExtension64.dll (.Igor Pavlov.-.7-Zip Shell Extension.) - (18.5.0.0) -- C:\Program Files\7-Zip\7-zip.dll (..-..) - (0.0.0.0) -- C:\Users\Timothée\AppData\Local\MEGAsync\ShellExtX64.dll (.Sony DADC Austria AG..-.SecuROM Context-Menu for Explorer..) - (1.1.221.0) -- c:\windows\SysWOW64\cmdlineext_x64.dll ---------- | Winlogon.exe Modules (Microsoft Files Whitelisted) ---------- | svchost.exe Modules (Microsoft Files Whitelisted) (..-..) - (0.0.0.0) -- C:\Windows\System32\InputHost.dll (.SQLite Development Team.-.SQLite is a software library that implements a self-contained, serverless, zero-configuration, transactional SQL database engine..) - (3.23.2.0) -- c:\windows\system32\winsqlite3.dll ---------- | ZeroAccess Check [HKLM\Software\Classes\CLSID\{1108BE51-F58A-4CDA-BB99-7A0227D11D5E}\InProcServer32] : %systemroot%\system32\wbem\fastprox.dll [HKLM\Software\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] : %SystemRoot%\system32\windows.storage.dll [HKLM\Software\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] : %systemroot%\system32\wbem\fastprox.dll [HKLM\Software\Classes\CLSID\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] : %systemroot%\system32\wbem\wbemess.dll [HKLM\Software\Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] : %SystemRoot%\system32\shell32.dll [HKLM\Software\WOW6432Node\Classes\CLSID\{1108BE51-F58A-4CDA-BB99-7A0227D11D5E}\InProcServer32] : %systemroot%\system32\wbem\fastprox.dll [HKLM\Software\WOW6432Node\Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] : %SystemRoot%\system32\windows.storage.dll [HKLM\Software\WOW6432Node\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] : %systemroot%\system32\wbem\fastprox.dll [HKLM\Software\WOW6432Node\Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] : %SystemRoot%\system32\shell32.dll ---------- | Startings up OneDriveSetup - (C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup [HKU\S-1-5-19\SOFTWARE\...\Run]) - User: AUTORITE NT\SERVICE LOCAL OneDriveSetup - (C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup [HKU\S-1-5-20\SOFTWARE\...\Run]) - User: AUTORITE NT\SERVICE RÉSEAU MEGAsync - (MEGAsync.lnk [Startup]) - User: TIMO\Timothée puush - (C:\Program Files (x86)\puush\puush.exe [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\...\Run]) - User: TIMO\Timothée DAEMON Tools Lite Automount - ("C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\...\Run]) - User: TIMO\Timothée AEA7AFC460C1CA92DEE0F639AEB7058F8E14EE17._service_run - ("C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service /prefetch:8 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\...\Run]) - User: TIMO\Timothée CCleaner Smart Cleaning - ("C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\...\Run]) - User: TIMO\Timothée MsnMsgr - ("C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe" /background [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\...\Run]) - User: TIMO\Timothée EpicGamesLauncher - ("C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\...\Run]) - User: TIMO\Timothée com.blitz.app - (C:\Users\Timothée\AppData\Local\Blitz\Update.exe --processStart "Blitz.exe" --process-start-args "--hidden" [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\...\Run]) - User: TIMO\Timothée Assistant Smart Wizard NETGEAR pour WG311v3 - (C:\PROGRA~2\NETGEAR\WG111v3\WG111v3.exe [Common Startup]) - User: Public NETGEAR WG111v3 Smart Wizard - (C:\PROGRA~2\NETGEAR\WG111v3\WG111v3.exe [Common Startup]) - User: Public NETGEAR WN111 Smart Wizard - (C:\PROGRA~2\NETGEAR\WN111\wn111.exe /HIDE [Common Startup]) - User: Public Play Wireless USB Adapter Utility - (C:\PROGRA~2\Belkin\F7D4101\V1\PBN.exe [Common Startup]) - User: Public SecurityHealth - (%windir%\system32\SecurityHealthSystray.exe [HKLM\SOFTWARE\...\Run]) - User: Public Launch LCore - (C:\Program Files\Logitech Gaming Software\LCore.exe /minimized [HKLM\SOFTWARE\...\Run]) - User: Public CsrHCRPServer - (C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe [HKLM\SOFTWARE\...\Run]) - User: Public CsrAudioguiCtrl - (C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe [HKLM\SOFTWARE\...\Run]) - User: Public CsrSyncMLServer - (C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe [HKLM\SOFTWARE\...\Run]) - User: Public vksts - (C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe [HKLM\SOFTWARE\...\Run]) - User: Public HarmonyUserStartup - (C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe [HKLM\SOFTWARE\...\Run]) - User: Public CSRHarmonySkypePlugin - (C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\CSRHarmonySkypePlugin.exe [HKLM\SOFTWARE\...\Run]) - User: Public TrayApplication - (C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe [HKLM\SOFTWARE\...\Run]) - User: Public IAStorIcon - ("C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60 [HKLM\SOFTWARE\...\Run]) - User: Public RTHDVCPL - ("C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s [HKLM\SOFTWARE\...\Run]) - User: Public EvtMgr6 - (C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming [HKLM\SOFTWARE\...\Run]) - User: Public [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Command Processor] "CompletionChar"=9 "DefaultColor"=0 "EnableExtensions"=1 "PathCompletionChar"=9 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Run] "puush"=C:\Program Files (x86)\puush\puush.exe [10/01/2012 14:41:46] "DAEMON Tools Lite Automount"="C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun "AEA7AFC460C1CA92DEE0F639AEB7058F8E14EE17._service_run"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service /prefetch:8 "CCleaner Smart Cleaning"="C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR "MsnMsgr"="C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe" /background "EpicGamesLauncher"="C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent "com.blitz.app"=C:\Users\Timothée\AppData\Local\Blitz\Update.exe --processStart "Blitz.exe" --process-start-args "--hidden" [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] "CCleaner Monitoring"=0x0300000063768BA1616DD001 "DAEMON Tools Lite"=0x020000000000000000000000 "DAEMON Tools Lite Automount"=0x020000000000000000000000 "puush"=0x020000000000000000000000 "AEA7AFC460C1CA92DEE0F639AEB7058F8E14EE17._service_run"=0x020000000000000000000000 "GalaxyClient"= "AMDDVR"=0x020000000000000000000000 "CCleaner Smart Cleaning"=0x020000000000000000000000 "Plays"=0x030000005C89B6E627C2D401 "MsnMsgr"=0x03000000481C97D3A8BCD401 "EpicGamesLauncher"=0x03000000794757E027C2D401 "com.blitz.app"=0x020000000000000000000000 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\RunMRU] "a"=DCOMCNFG\1 "MRUList"=dcba "b"=C:\WINDOWS\system32\\1 "c"=netplwizC:\WINDOWS\system32\\1 "d"=ncpa.cpl\1 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "Device"=OneNote,winspool,Ne04: "IsMRUEstablished"=0 "LegacyDefaultPrinterMode"=0 [HKLM\Software\Microsoft\Command Processor] "DefaultColor"=0 "EnableExtensions"=1 "CompletionChar"=64 "PathCompletionChar"=64 [HKLM\Software\Microsoft\Windows\CurrentVersion\Run] "SecurityHealth"=%windir%\system32\SecurityHealthSystray.exe "Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe /minimized "CsrHCRPServer"=C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe [22/03/2012 22:11:46] "CsrAudioguiCtrl"=C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe [22/03/2012 22:11:04] "CsrSyncMLServer"=C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe [22/03/2012 22:11:56] "vksts"=C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe [22/03/2012 22:12:28] "HarmonyUserStartup"=C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe [22/03/2012 22:12:04] "CSRHarmonySkypePlugin"=C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\CSRHarmonySkypePlugin.exe [22/03/2012 22:05:58] "TrayApplication"=C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe [22/03/2012 22:12:22] "IAStorIcon"="C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60 "RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s "EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run] "SecurityHealth"=0x060000000000000000000000 "RTHDVCPL"=0x020000000000000000000000 "Classic Start Menu"=0x020000000000000000000000 "IAStorIcon"=0x020000000000000000000000 "Launch LCore"=0x020000000000000000000000 "StartCN"=0x020000000000000000000000 "vksts"=0x020000000000000000000000 "TrayApplication"=0x020000000000000000000000 "HarmonyUserStartup"=0x0300000018FE0748A96CD501 "CsrHCRPServer"=0x030000002929D441A96CD501 "CsrAudioguiCtrl"=0x0300000086C2B43FA96CD501 "CsrSyncMLServer"=0x03000000F27CD33DA96CD501 "CSRHarmonySkypePlugin"=0x0300000058970DE6966CD501 "EvtMgr6"=0x020000000000000000000000 "WindowsDefender"=0x020000000000000000000000 [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32] "RzWizard"=0x040000000000000000000000 "StartCCC"=0x020000000000000000000000 "SunJavaUpdateSched"=0x020000000000000000000000 "IMSS"=0x020000000000000000000000 "Super Charger"=0x020000000000000000000000 "DivXMediaServer"=0x020000000000000000000000 "DivXUpdate"=0x020000000000000000000000 "Raptr"=0x0300000086C5FD38D484D001 "Razer Synapse"=0x020000000000000000000000 "EEventManager"=0x020000000000000000000000 "PLTHub.exe"=0x03000000F0F2E666AE15D201 "VirtualCloneDrive"=0x020000000000000000000000 "PWRISOVM.EXE"=0x020000000000000000000000 "LogMeIn Hamachi Ui"=0x0300000084B807DAA8BCD401 "SL-6397 Gaming Mouse"=0x020000000000000000000000 [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] ""=mnmsrvc "AppInit_DLLs"= "DdeSendTimeout"=0 "DesktopHeapLogging"=1 "DeviceNotSelectedTimeout"=15 "DwmInputUsesIoCompletionPort"=1 "EnableDwmInputProcessing"=7 "GDIProcessHandleQuota"=10000 "IconServiceLib"=IconCodecService.dll "LoadAppInit_DLLs"=0 "NaturalInputHandler"=Ninput.dll "ShutdownWarningDialogTimeout"=4294967295 "Spooler"=yes "ThreadUnresponsiveLogTimeout"=500 "TransmissionRetryTimeout"=90 "USERNestedWindowLimit"=50 "USERPostMessageLimit"=10000 "USERProcessHandleQuota"=10000 "Win32kLastWriteTime"=1D525EBE3973F98 [HKLM\Software\WOW6432Node\Microsoft\Command Processor] "CompletionChar"=9 "DefaultColor"=0 "EnableExtensions"=1 "PathCompletionChar"=9 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run] "IMSS"="C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" 60 "Super Charger"=C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe [22/10/2014 09:49:55] "DivXMediaServer"=C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [18/12/2018 03:48:32] "Razer Synapse"="C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" "PLTHub.exe"=C:\Program Files (x86)\Plantronics\Spokes3G\PLTHub.exe -min "VirtualCloneDrive"="C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s "EEventManager"="C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe" "StartCCC"="C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun "SL-6397 Gaming Mouse"="C:\Program Files (x86)\SPEEDLINK\DECUS Gaming Mouse\Monitor.exe" "PWRISOVM.EXE"=C:\Program Files\PowerISO\PWRISOVM.EXE -startup ""= "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Windows] ""=mnmsrvc "AppInit_DLLs"= "DdeSendTimeout"=0 "DesktopHeapLogging"=1 "DeviceNotSelectedTimeout"=15 "DwmInputUsesIoCompletionPort"=1 "EnableDwmInputProcessing"=7 "GDIProcessHandleQuota"=10000 "IconServiceLib"=IconCodecService.dll "LoadAppInit_DLLs"=0 "NaturalInputHandler"=Ninput.dll "ShutdownWarningDialogTimeout"=4294967295 "Spooler"=yes "ThreadUnresponsiveLogTimeout"=500 "TransmissionRetryTimeout"=90 "USERNestedWindowLimit"=50 "USERPostMessageLimit"=10000 "USERProcessHandleQuota"=10000 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] "WebCheck"={E6FB5E20-DE35-11CF-9C87-00AA005127ED} ---------- | Win.ini : ---------- | System.ini : ---------- | Tasks List Adobe Flash Player NPAPI Notifier Adobe Flash Player Updater CCleaner Update CCleanerSkipUAC DivXUpdate GoogleUpdateTaskMachineCore GoogleUpdateTaskMachineUA Opera scheduled Autoupdate 1428952627 Optimize Start Menu Cache Files-S-1-5-21-364868280-2578744981-2741750218-1000 Overwolf Updater Task ---------- | Startings up registry ¦ Folder ---------- | Control - lsa - SecurityProviders - Session Manager - Terminal Server [HKLM\System\CurrentControlSet\Control] "BootDriverFlags"=28 "CurrentUser"=USERNAME "EarlyStartServices"=RpcSs Power BrokerInfrastructure SystemEventsBroker DcomLaunch RpcEpMapper LSM AppIdSvc "PreshutdownOrder"=DeviceInstall UsoSvc gpsvc trustedinstaller "SvcHostSplitThresholdInKB"=3670016 "WaitToKillServiceTimeout"=2000 "SystemStartOptions"= NOEXECUTE=OPTIN "SystemBootDevice"=multi(0)disk(0)rdisk(0)partition(2) "FirmwareBootDevice"=multi(0)disk(0)rdisk(0)partition(1) "LastBootSucceeded"=1 "LastBootShutdown"=1 "DirtyShutdownCount"=9 [HKLM\System\CurrentControlSet\Control\lsa] "auditbasedirectories"=0 "auditbaseobjects"=0 "Bounds"=0x0030000000200000 "crashonauditfail"=0 "fullprivilegeauditing"=0x00 "LimitBlankPasswordUse"=1 "NoLmHash"=1 "Security Packages"="" [01/03/2016 19:10:02] "Notification Packages"=scecli "Authentication Packages"=msv1_0 "disabledomaincreds"=0 "everyoneincludesanonymous"=0 "forceguest"=0 "LsaCfgFlagsDefault"=0 "LsaPid"=1008 "ProductType"=6 "restrictanonymous"=0 "restrictanonymoussam"=1 "SamConnectedAccountsExist"=1 "SecureBoot"=1 [HKLM\System\CurrentControlSet\Control\SecurityProviders] "SecurityProviders"=credssp.dll [HKLM\System\CurrentControlSet\Control\Session Manager] "AutoChkTimeout"=8 "BootExecute"=autocheck autochk * "BootShell"=%SystemRoot%\system32\bootim.exe "CriticalSectionTimeout"=2592000 "ExcludeFromKnownDlls"= "GlobalFlag"=0 "GlobalFlag2"=0 "HeapDeCommitFreeBlockThreshold"=0 "HeapDeCommitTotalFreeThreshold"=0 "HeapSegmentCommit"=0 "HeapSegmentReserve"=0 "InitConsoleFlags"=0 "NumberOfInitialSessions"=2 "ObjectDirectories"=\Windows \RPC Control "ProcessorControl"=2 "ProtectionMode"=1 "RunLevelExecute"=WinInit ServiceControlManager "RunLevelValidate"=ServiceControlManager "SETUPEXECUTE"= "AutoChkSkipSystemPartition"=0 "ResourceTimeoutCount"=648000 [HKLM\System\CurrentControlSet\Control\Terminal Server] "AllowRemoteRPC"=0 "DelayConMgrTimeout"=0 "DeleteTempDirsOnExit"=1 "fDenyTSConnections"=1 "fSingleSessionPerUser"=1 "NotificationTimeOut"=0 "PerSessionTempDir"=0 "ProductVersion"=5.1 "RCDependentServices"=CertPropSvc SessionEnv "SnapshotMonitors"=1 "StartRCM"=0 "TSUserEnabled"=0 "RailShowallNotifyIcons"=1 "RDPVGCInstalled"=1 "InstanceID"=67ee9bd3-cfe0-4fec-ac62-144f72c "GlassSessionId"=3 ---------- | .LNK with Arguments ---------- | AppCertDlls ---------- | Dnsapi.dll C:\WINDOWS\System32\dnsapi.dll -> OK : \drivers\etc\hosts C:\WINDOWS\SysWOW64\dnsapi.dll -> OK : \drivers\etc\hosts ---------- | Policies | Registry [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Control Panel\Desktop] "ActiveWndTrackTimeout"=0 "BlockSendInputResets"=0 "CaretTimeout"=5000 "CaretWidth"=1 "ClickLockTime"=1200 "CoolSwitchColumns"=7 "CoolSwitchRows"=3 "CursorBlinkRate"=530 "DockMoving"=1 "DragFromMaximize"=1 "DragFullWindows"=1 "DragHeight"=4 "DragWidth"=4 "FocusBorderHeight"=1 "FocusBorderWidth"=1 "FontSmoothing"=2 "FontSmoothingGamma"=0 "FontSmoothingOrientation"=1 "FontSmoothingType"=2 "ForegroundFlashCount"=7 "ForegroundLockTimeout"=200000 "LeftOverlapChars"=3 "MenuShowDelay"=400 "MouseWheelRouting"=2 "PaintDesktopVersion"=0 "Pattern"=0 "RightOverlapChars"=3 "ScreenSaveActive"=1 "SnapSizing"=1 "TileWallpaper"=0 "WallpaperOriginX"=0 "WallpaperOriginY"=0 "WallpaperStyle"=10 "WheelScrollChars"=3 "WheelScrollLines"=3 "WindowArrangementActive"=1 "WallPaper"=C:\Users\Timothée\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\hebus_1920x1080_1539191742_1137.jpg [20/03/2019 19:04:36] "MouseMonitorEscapeSpeed"=0 "Win8DpiScaling"=0 "UserPreferencesMask"=0x9E1E078012000000 "AutoColorization"=0 "MaxVirtualDesktopDimension"=3840 "MaxMonitorDimension"=1920 "TranscodedImageCount"=1 "LastUpdated"=4294967295 "TranscodedImageCache"=0x7AC30100BFC2030080070000380400004F8CACFF3EDFD40143003A005C00550073006500720073005C00540069006D006F0074006800E90065005C0041007000700044006100740061005C004C006F00630061006C005C004D006900630072006F0073006F00660074005C00570069006E0064006F00770073005C005400680065006D00650073005C0052006F0061006D00650064005400680065006D006500460069006C00650073005C004400650073006B0074006F0070004200610063006B00670072006F0075006E0064005C00680065006200750073005F003100390032003000780031003000380030005F0031003500330039003100390031003700340032005F0031003100330037002E006A0070006700000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 "ImageColor"=2563735912 "PreferredUILanguages"=fr-FR "Pattern Upgrade"=TRUE "DpiScalingVer"=4096 "WaitToKillAppTimeout"=2000 "HungAppTimeout"=2000 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel] "{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}"=1 "{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}"=1 "{20D04FE0-3AEA-1069-A2D8-08002B30309D}"=1 "{090C3F24-ECB9-4D58-B5CD-F23CDF26B02F}"=1 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu] "{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}"=1 "{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}"=1 "{20D04FE0-3AEA-1069-A2D8-08002B30309D}"=1 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer] "EdgeDesktopShortcutCreated"=1 "EnableAutoTray"=0 "ShellState"=0x240000003328000000000000000000000000000001000000130000000000000072000000 "ExplorerStartupTraceRecorded"=1 "UserSignedIn"=1 "SlowContextMenuEntries"=0x6078A409B011A54DAFA526D86198A78082140000402D7B967D8B2741904961EA0C2C6DCE991800000114020000000000C000000000000046DA490000602F47BDFA27CF11B8B4444553540000201A000044F8271D1F3A104485AC14651078412D60170000 "SIDUpdatedOnLibraries"=1 "LocalKnownFoldersMigrated"=1 "TelemetrySalt"=2 "GlobalAssocChangedCounter"=407 "FirstRunTelemetryComplete"=1 "AppReadinessLogonComplete"=1 "PostAppInstallTasksCompleted"=1 "Browse For Folder Width"=347 "Browse For Folder Height"=346 "link"=0x15000000 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced] "Start_SearchFiles"=2 "StoreAppsOnTaskbar"=1 "ServerAdminUI"=0 "Hidden"=1 "ShowCompColor"=1 "HideFileExt"=0 "DontPrettyPath"=0 "ShowInfoTip"=1 "HideIcons"=0 "MapNetDrvBtn"=0 "WebView"=1 "Filter"=0 "ShowSuperHidden"=0 "SeparateProcess"=0 "AutoCheckSelect"=0 "IconsOnly"=1 "ShowTypeOverlay"=1 "ShowStatusBar"=1 "ListviewAlphaSelect"=1 "ListviewShadow"=1 "TaskbarAnimations"=1 "StartMenuInit"=13 "ReindexedProfile"=1 "EnableStartMenu"=1 "TaskbarSizeMove"=0 "DisablePreviewDesktop"=1 "TaskbarGlomLevel"=0 "LaunchTo"=1 "TaskbarStateLastRun"=0x9A8A985D00000000 "ShowTaskViewButton"=1 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\WordWheelQuery] "MRUListEx"=0x0C0000000B0000000A00000009000000080000000700000006000000050000000400000003000000020000000100000000000000FFFFFFFF "0"=0x69006E007400650072000000 "1"=0x68006100640065000000 "2"=0x6C006F0063006B000000 "3"=0x6C0069007600650062006F000000 "4"=0x770069006E0064006F00770073000000 "5"=0x620068006F0070005F006C000000 "6"=0x6C0061006E0064000000 "7"=0x7300790073000000 "8"=0x730079007300740065006D000000 "9"=0x7400720061006E0073000000 "10"=0x65007A000000 "11"=0x65007A0063006C000000 "12"=0xE90063006C006100690072006100670065000000 [HKLM\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers] "authenticodeenabled"=0 [HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "DSCAutomationHostEnabled"=2 "EnableCursorSuppression"=1 "EnableFullTrustStartupTasks"=2 "EnableInstallerDetection"=1 "EnableLUA"=1 "EnableSecureUIAPaths"=1 "EnableUIADesktopToggle"=0 "EnableUwpStartupTasks"=2 "EnableVirtualization"=1 "PromptOnSecureDesktop"=1 "SupportFullTrustStartupTasks"=1 "SupportUwpStartupTasks"=1 "ValidateAdminCodeSignatures"=0 "undockwithoutlogon"=1 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "scforceoption"=0 "shutdownwithoutlogon"=1 [HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "ForceActiveDesktopOn"=0 "NoRecentDocsHistory"=0 "NoActiveDesktopChanges"=0 "NoActiveDesktop"=0 [HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop] "NoAddingComponents"=1 "NoComponents"=1 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel] "{031E4825-7B94-4dc3-B131-E946B44C8DD5}"=1 "{208D2C60-3AEA-1069-A2D7-08002B30309D}"=1 "{20D04FE0-3AEA-1069-A2D8-08002B30309D}"=1 "{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}"=1 "{59031a47-3f72-44a7-89c5-5595fe6b30ee}"=1 "{871C5380-42A0-1069-A2EA-08002B30309D}"=1 "{9343812e-1c37-4a49-a12e-4b2d810d956b}"=1 "{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}"=1 "{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}"=1 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu] "{871C5380-42A0-1069-A2EA-08002B30309D}.default"=0 "{9343812e-1c37-4a49-a12e-4b2d810d956b}"=1 [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] "CheckedValue"=1 "DefaultValue"=2 "HKeyRoot"=2147483649 "Id"=2 "RegPath"=Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "Text"=@shell32.dll,-30500 "Type"=radio "ValueName"=Hidden [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer] "ActiveSetupDisabled"=0 "ActiveSetupTaskOverride"=1 "AsyncRunOnce"=1 "AsyncUpdatePCSettings"=1 "DisableAppInstallsOnFirstLogon"=1 "DisableResolveStoreCategories"=1 "DisableUpgradeCleanup"=1 "EarlyAppResolverStart"=1 "FileOpenDialog"={DC1C5A9C-E88A-4dde-A5A1-60F82A20AEF7} "FSIASleepTimeInMs"=60000 "GlobalFolderSettings"={EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} "IconUnderline"=2 "ListViewPopupControl"={8be9f5ea-e746-4e47-ad57-3fb191ca1eed} "LVPopupSearchControl"={fccf70c8-f4d7-4d8b-8c17-cd6715e37fff} "MachineOobeUpdates"=1 "NoWaitOnRoamingPayloads"=1 "TaskScheduler"={0f87369f-a4e5-4cfc-bd3e-73e6154572dd} "AccessDeniedDialog"={100B4FC8-74C1-470F-B1B7-DD7B6BAE79BD} "SmartScreenEnabled"=Off [HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced] "Start_TrackDocs"=1 "TaskbarSizeMove"=0 [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] "Application"=http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s [HKLM\Software\WOW6432Node\Policies\Microsoft\Windows\Safer\CodeIdentifiers] "authenticodeenabled"=0 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=5 "ConsentPromptBehaviorUser"=3 "DSCAutomationHostEnabled"=2 "EnableCursorSuppression"=1 "EnableFullTrustStartupTasks"=2 "EnableInstallerDetection"=1 "EnableLUA"=1 "EnableSecureUIAPaths"=1 "EnableUIADesktopToggle"=0 "EnableUwpStartupTasks"=2 "EnableVirtualization"=1 "PromptOnSecureDesktop"=1 "SupportFullTrustStartupTasks"=1 "SupportUwpStartupTasks"=1 "ValidateAdminCodeSignatures"=0 "undockwithoutlogon"=1 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "scforceoption"=0 "shutdownwithoutlogon"=1 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] "ForceActiveDesktopOn"=0 "NoRecentDocsHistory"=0 "NoActiveDesktopChanges"=0 "NoActiveDesktop"=0 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop] "NoAddingComponents"=1 "NoComponents"=1 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel] "{031E4825-7B94-4dc3-B131-E946B44C8DD5}"=1 "{208D2C60-3AEA-1069-A2D7-08002B30309D}"=1 "{20D04FE0-3AEA-1069-A2D8-08002B30309D}"=1 "{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}"=1 "{59031a47-3f72-44a7-89c5-5595fe6b30ee}"=1 "{871C5380-42A0-1069-A2EA-08002B30309D}"=1 "{9343812e-1c37-4a49-a12e-4b2d810d956b}"=1 "{B4FB3F98-C1EA-428d-A78A-D1F5659CBA93}"=1 "{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}"=1 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\ClassicStartMenu] "{871C5380-42A0-1069-A2EA-08002B30309D}.default"=0 "{9343812e-1c37-4a49-a12e-4b2d810d956b}"=1 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] "CheckedValue"=1 "DefaultValue"=2 "HKeyRoot"=2147483649 "Id"=2 "RegPath"=Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "Text"=@shell32.dll,-30500 "Type"=radio "ValueName"=Hidden [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer] "ActiveSetupDisabled"=0 "ActiveSetupTaskOverride"=1 "AsyncRunOnce"=1 "AsyncUpdatePCSettings"=1 "DisableAppInstallsOnFirstLogon"=1 "DisableResolveStoreCategories"=1 "DisableUpgradeCleanup"=1 "EarlyAppResolverStart"=1 "FileOpenDialog"={DC1C5A9C-E88A-4dde-A5A1-60F82A20AEF7} "FSIASleepTimeInMs"=60000 "GlobalFolderSettings"={EF8AD2D1-AE36-11D1-B2D2-006097DF8C11} "IconUnderline"=2 "ListViewPopupControl"={8be9f5ea-e746-4e47-ad57-3fb191ca1eed} "LVPopupSearchControl"={fccf70c8-f4d7-4d8b-8c17-cd6715e37fff} "MachineOobeUpdates"=1 "NoWaitOnRoamingPayloads"=1 "TaskScheduler"={0f87369f-a4e5-4cfc-bd3e-73e6154572dd} "AccessDeniedDialog"={100B4FC8-74C1-470F-B1B7-DD7B6BAE79BD} "GlobalAssocChangedCounter"=9 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced] "Start_TrackDocs"=1 "TaskbarSizeMove"=0 [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] "Application"=http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s ---------- | Winlogon [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] "ExcludeProfileDirs"=AppData\Local;AppData\LocalLow;$Recycle.Bin;OneDrive;Work Folders "BuildNumber"=17763 "FirstLogon"=0 "PUUActive"=0x5B98CD3F01000900BD008F0432AB35000C965B000C965B00D2000000020028004DE7008E840DBE0015957700A8F21E0078B51D0043CA0700000000007A9C7700AD060100EC210000BB072850F57CD50132AB3500000000000100000032AB350063450000000000000000000000000000 "DP"=0xD200E800AC010900C00000005B98CD3F000000000000000023EDCA82E77CD50123EDCA82E77CD501000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000F03F80510100E54000808405E20B8525E20BEA0301C0A1014F41A3616F417C0B0100B6208412BE308C12B89900C0886D2109897D3B0914460080066A004306EA205748AB0080010C8856054C8A5609700080A98C0632A98D063BD4480140AF001830EF021A3006370180403400224034842BDC1A0080200C8504200DC506651700408C0005118D030511 "ParseAutoexec"=1 [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] "Background"=0 0 0 "CachedLogonsCount"=10 "DebugServerCommand"=no "DisableBackButton"=1 "EnableSIHostIntegration"=1 "ForceUnlockLogon"=0 "LegalNoticeCaption"= "LegalNoticeText"= "PasswordExpiryWarning"=5 "PowerdownAfterShutdown"=0 "PreCreateKnownFolders"={A520A1A4-1780-4FF6-BD18-167343C5AF16} "ReportBootOk"=1 "Shell"=explorer.exe "ShellCritical"=0 "ShellInfrastructure"=sihost.exe "SiHostCritical"=0 "SiHostReadyTimeOut"=0 "SiHostRestartCountLimit"=0 "SiHostRestartTimeGap"=0 "VMApplet"=SystemPropertiesPerformance.exe /pagefile "WinStationsDisabled"=0 "scremoveoption"=0 "LastLogOffEndTimePerfCounter"=221350274304 "ShutdownFlags"=2147483687 "Userinit"=C:\Windows\system32\userinit.exe, "ShutdownWithoutLogon"=0 "AutoRestartShell"=0 "DisableCad"=1 "EnableFirstLogonAnimation"=1 "AutoLogonSID"=S-1-5-21-364868280-2578744981-2741750218-1000 "LastUsedUsername"=Timothée [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] "DefaultDomainName"= "DefaultUserName"= "EnableSIHostIntegration"=1 "PreCreateKnownFolders"={A520A1A4-1780-4FF6-BD18-167343C5AF16} "Shell"=explorer.exe "ShellCritical"=0 "SiHostCritical"=0 "SiHostReadyTimeOut"=0 "SiHostRestartCountLimit"=0 "SiHostRestartTimeGap"=0 "Userinit"=C:\WINDOWS\system32\userinit.exe [15/09/2018 09:28:45] ---------- | Associations [HKLM\Software\Classes\.exe] ""=exefile "Content Type"=application/x-msdownload [HKLM\Software\Classes\exefile\Shell\Open\Command] ""="%1" %* "IsolatedCommand"="%1" %* [HKLM\Software\Classes\.com] ""=comfile [HKLM\Software\Classes\comfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\Classes\.reg] ""=regfile [HKLM\Software\Classes\regfile\Shell\Open\Command] ""=regedit.exe "%1" [HKLM\Software\Classes\.scr] ""=scrfile [HKLM\Software\Classes\scrfile\Shell\Open\Command] ""="%1" /S [HKLM\Software\Classes\.bat] ""=batfile [HKLM\Software\Classes\batfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\Classes\.cmd] ""=cmdfile [HKLM\Software\Classes\cmdfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\Classes\.pif] ""=piffile [HKLM\Software\Classes\piffile\Shell\Open\Command] ""="%1" %* [HKLM\Software\Classes\.inf] ""=inffile [HKLM\Software\Classes\inffile\Shell\Open\Command] ""=%SystemRoot%\system32\NOTEPAD.EXE %1 [HKLM\Software\Classes\.url] ""=InternetShortcut [HKLM\Software\Classes\.lnk] ""=lnkfile [HKLM\Software\Classes\.hta] ""=htafile "Content Type"=application/hta "PerceivedType"=text [HKLM\Software\Classes\htafile\Shell\Open\Command] ""=C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* [HKLM\Software\Classes\InternetShortcut] "EditFlags"=2 "FriendlyTypeName"=@C:\WINDOWS\system32\ieframe.dll,-10046 "FullDetails"=prop:System.Link.TargetUrl;System.Rating;System.Link.Description;System.Link.Comment "InfoTip"=prop:System.Link.TargetUrl;System.Rating;System.Link.Description;System.Link.Comment "IsShortcut"= "NeverShowExt"= "PreviewDetails"=prop:System.Link.TargetUrl;System.Rating;System.History.VisitCount;System.History.DateChanged;System.Link.DateVisited;System.Link.Description;System.Link.Comment ""=Raccourci Internet [HKLM\Software\Classes\Application.Manifest] ""=Application Manifest "BrowserFlags"=4096 "EditFlags"=4259840 "FriendlyTypeName"=@C:\Windows\System32\dfshim.dll,-200 [HKLM\Software\Classes\Application.Reference] ""=Application Reference "EditFlags"=131072 "FriendlyTypeName"=@C:\Windows\System32\dfshim.dll,-201 "IsShortcut"= "NeverShowExt"= [HKLM\Software\Classes\Folder] ""=Folder "AppUserModelID"=Microsoft.Windows.Explorer "ContentViewModeForBrowse"=prop:~System.ItemNameDisplay;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;System.DateModified "ContentViewModeForSearch"=prop:~System.ItemNameDisplay;System.DateModified;~System.ItemFolderPathDisplay "ContentViewModeLayoutPatternForBrowse"=delta "ContentViewModeLayoutPatternForSearch"=alpha "EditFlags"=0xD2030000 "FullDetails"=prop:System.PropGroup.Description;System.ItemNameDisplay;System.ItemTypeText;System.Size;System.HomeGroupSharingStatus "NoRecentDocs"= "ThumbnailCutoff"=0 "TileInfo"=prop:System.Title;System.HomeGroupSharingStatus [HKLM\Software\WOW6432Node\Classes\.exe] ""=exefile "Content Type"=application/x-msdownload [HKLM\Software\WOW6432Node\Classes\exefile\Shell\Open\Command] ""="%1" %* "IsolatedCommand"="%1" %* [HKLM\Software\WOW6432Node\Classes\.com] ""=comfile [HKLM\Software\WOW6432Node\Classes\comfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\WOW6432Node\Classes\.reg] ""=regfile [HKLM\Software\WOW6432Node\Classes\regfile\Shell\Open\Command] ""=regedit.exe "%1" [HKLM\Software\WOW6432Node\Classes\.scr] ""=scrfile [HKLM\Software\WOW6432Node\Classes\scrfile\Shell\Open\Command] ""="%1" /S [HKLM\Software\WOW6432Node\Classes\.bat] ""=batfile [HKLM\Software\WOW6432Node\Classes\batfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\WOW6432Node\Classes\.cmd] ""=cmdfile [HKLM\Software\WOW6432Node\Classes\cmdfile\Shell\Open\Command] ""="%1" %* [HKLM\Software\WOW6432Node\Classes\.pif] ""=piffile [HKLM\Software\WOW6432Node\Classes\piffile\Shell\Open\Command] ""="%1" %* [HKLM\Software\WOW6432Node\Classes\.inf] ""=inffile [HKLM\Software\WOW6432Node\Classes\inffile\Shell\Open\Command] ""=%SystemRoot%\system32\NOTEPAD.EXE %1 [HKLM\Software\WOW6432Node\Classes\.url] ""=InternetShortcut [HKLM\Software\WOW6432Node\Classes\.lnk] ""=lnkfile [HKLM\Software\WOW6432Node\Classes\.hta] ""=htafile "Content Type"=application/hta "PerceivedType"=text [HKLM\Software\WOW6432Node\Classes\htafile\Shell\Open\Command] ""=C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* [HKLM\Software\WOW6432Node\Classes\InternetShortcut] "EditFlags"=2 "FriendlyTypeName"=@C:\WINDOWS\system32\ieframe.dll,-10046 "FullDetails"=prop:System.Link.TargetUrl;System.Rating;System.Link.Description;System.Link.Comment "InfoTip"=prop:System.Link.TargetUrl;System.Rating;System.Link.Description;System.Link.Comment "IsShortcut"= "NeverShowExt"= "PreviewDetails"=prop:System.Link.TargetUrl;System.Rating;System.History.VisitCount;System.History.DateChanged;System.Link.DateVisited;System.Link.Description;System.Link.Comment ""=Raccourci Internet [HKLM\Software\WOW6432Node\Classes\Application.Manifest] ""=Application Manifest "BrowserFlags"=4096 "EditFlags"=4259840 "FriendlyTypeName"=@C:\Windows\System32\dfshim.dll,-200 [HKLM\Software\WOW6432Node\Classes\Application.Reference] ""=Application Reference "EditFlags"=131072 "FriendlyTypeName"=@C:\Windows\System32\dfshim.dll,-201 "IsShortcut"= "NeverShowExt"= [HKLM\Software\WOW6432Node\Classes\Folder] ""=Folder "AppUserModelID"=Microsoft.Windows.Explorer "ContentViewModeForBrowse"=prop:~System.ItemNameDisplay;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;~System.LayoutPattern.PlaceHolder;System.DateModified "ContentViewModeForSearch"=prop:~System.ItemNameDisplay;System.DateModified;~System.ItemFolderPathDisplay "ContentViewModeLayoutPatternForBrowse"=delta "ContentViewModeLayoutPatternForSearch"=alpha "EditFlags"=0xD2030000 "FullDetails"=prop:System.PropGroup.Description;System.ItemNameDisplay;System.ItemTypeText;System.Size;System.HomeGroupSharingStatus "NoRecentDocs"= "ThumbnailCutoff"=0 "TileInfo"=prop:System.Title;System.HomeGroupSharingStatus [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\Shell\open\Command] ""="C:\Program Files\Mozilla Firefox\firefox.exe" [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\InstallInfo] "ReinstallCommand"="C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Clients\StartMenuInternet\FIREFOX.EXE\Shell\open\Command] ""="C:\Program Files (x86)\Mozilla Firefox\firefox.exe" [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Clients\StartMenuInternet\FIREFOX.EXE\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\Shell\open\Command] ""="C:\Program Files\Mozilla Firefox\firefox.exe" [HKLM\Software\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\InstallInfo] "ReinstallCommand"="C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\Clients\StartMenuInternet\FIREFOX.EXE\Shell\open\Command] ""="C:\Program Files (x86)\Mozilla Firefox\firefox.exe" [HKLM\Software\Clients\StartMenuInternet\FIREFOX.EXE\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\Clients\StartMenuInternet\Google Chrome\Shell\open\Command] ""="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" [HKLM\Software\Clients\StartMenuInternet\Google Chrome\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --make-default-browser [HKLM\Software\Clients\StartMenuInternet\IEXPLORE.EXE\Shell\open\Command] ""=C:\Program Files\Internet Explorer\iexplore.exe [09/07/2019 20:38:21] [HKLM\Software\Clients\StartMenuInternet\IEXPLORE.EXE\InstallInfo] "ReinstallCommand"="C:\Windows\System32\ie4uinit.exe" -reinstall [HKLM\Software\Clients\StartMenuInternet\OperaStable\Shell\open\Command] ""="C:\Program Files (x86)\Opera\Launcher.exe" [HKLM\Software\Clients\StartMenuInternet\OperaStable\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Opera\Launcher.exe" --makedefaultbrowser [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\Shell\open\Command] ""="C:\Program Files\Mozilla Firefox\firefox.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Firefox-308046B0AF4A39CB\InstallInfo] "ReinstallCommand"="C:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\FIREFOX.EXE\Shell\open\Command] ""="C:\Program Files (x86)\Mozilla Firefox\firefox.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\FIREFOX.EXE\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Google Chrome\Shell\open\Command] ""="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\Google Chrome\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --make-default-browser [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\IEXPLORE.EXE\Shell\open\Command] ""=C:\Program Files\Internet Explorer\iexplore.exe [09/07/2019 20:38:21] [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\IEXPLORE.EXE\InstallInfo] "ReinstallCommand"="C:\Windows\System32\ie4uinit.exe" -reinstall [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\OperaStable\Shell\open\Command] ""="C:\Program Files (x86)\Opera\Launcher.exe" [HKLM\Software\WOW6432Node\Clients\StartMenuInternet\OperaStable\InstallInfo] "ReinstallCommand"="C:\Program Files (x86)\Opera\Launcher.exe" --makedefaultbrowser ---------- | AppcompatFlags [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted] "D:\Network\Realtek\PCIE\WIN8\setup.exe"=1 "C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe"=33 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] "SIGN.IE=0D6E90 ChromeSetup.exe"=0x5341435001000000000000000700000028000000906E0D0063BA0D0001000000000000000000030600210000975FD891C99ECE010000000100000000 "C:\Users\Timothée\Downloads\MaConfig_Win.exe"=0x534143500100000000000000070000002800000078E703009E6C040001000000000000000000000671000000975FD891C99ECE01000000000000000002000000280000000000000000080040000000000000000000000000000000009B850000000000000100000001000000 "C:\Users\Timothée\Downloads\chromeinstall-8u25.exe"=0x5341435001000000000000000700000028000000A8BF0900C5AE0A0001000000000000000000030671220000975FD891C99ECE010000000000000000020000002800000000000000000000400000000000000000000000000000000041810100000000000100000001000000 "C:\Users\Timothée\Application Data\SystemRequirementsLab\SystemRequirementsLab_intel_4.5.24.0.msi"=0x534143500100000000000000070000002800000000DA0000D0AF010001000000000000000000010500100000975FD891C99ECE010000000000000000020000002800000000000000000000400000000000000000000000000000000071020000000000000100000001000000 "C:\Program Files (x86)\SystemRequirementsLab\inteldriver.exe"=0x5341435001000000000000000700000028000000E0480300981A040001000000000000000000030671220000975FD891C99ECE01000000000000000005000000100000000000000000000000000000008000000002000000280000000000000080000040000000000000000000000000000000005E000000000000000200000002000000 "C:\Users\Timothée\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql.exe"=0x534143500100000000000000070000002800000018E514118FD0151101000000000000000000000671000000975FD891C99ECE010000000000000000020000002800000000000000000800400000000000000000000000000000000065680200000000000100000001000000 "SIGN.MEDIA=3B31588 DVDSetup.exe"=0x5341435001000000000000000700000028000000F0AB14004B1D150001000000000000000000030671220000975FD891C99ECE0100000000000000000200000028000000000000000000004000000000000000000000000000000000C4160000000000000100000001000000 "SIGN.MEDIA=1A3EF8 Utility\MSI\MSITrigger\VGA Boost\VGA Boost.exe"=0x5341435001000000000000000700000028000000580E1A00E9EE1A0001000000000000000000020600010000975FD891C99ECE01000000000000000002000000280000000000000000000080000000000000000000000000000000007A180000000000000100000001000000 "SIGN.MEDIA=55571C Chipset\Intel\Patsburg\SetupChipset.exe"=0x5341435001000000000000000700000028000000C08C2800BCCA280001000000000000000000010600010000975FD891C99ECE01000000000000000002000000280000000000000000000080000000000000000000000000000000001F490000000000000100000001000000 "SIGN.MEDIA=343EA14 Network\Realtek\PCIE\WIN8\setup.exe"=0x5341435001000000000000000700000028000000D81E0600F5D4060001000000000000000000000671020000975FD891C99ECE0100000000000000000200000028000000000000000000008000000000000000000000000000000000C8F00000000000000100000001000000 "SIGN.MEDIA=C627A53 Sound\Realtek\HD\WIN7\Setup.exe"=0x5341435001000000000000000700000028000000E8D801007522020001000000000000000000010571200000975FD891C99ECE0100000000000000000200000028000000000000000008008000000000000000000000000000000000314D0100000000000100000001000000 "SIGN.MEDIA=5ABF0 Utility\MSI\MSIWallpaper-A\MSIWallpaper.exe"=0x5341435001000000000000000700000028000000F0AB0500365C060001000000000000000000020671200000975FD891C99ECE0100000000000000000200000028000000000000000000008000000000000000000000000000000000C8030000000000000100000001000000 "SIGN.MEDIA=679FA72 OtherDriver\Intel AMT Driver\SetupME.exe"=0x5341435001000000000000000700000028000000D8457906328D790601000000000000000000010600010000975FD891C99ECE0100000000000000000200000028000000000000000000008000000000000000000000000000000000DFDA0000000000000100000001000000 "SIGN.MEDIA=49D1814 OtherDriver\Intel SBA\setup.exe"=0x5341435001000000000000000700000028000000C03A6C0382296D0301000000000000000000010600010000975FD891C99ECE010000000000000000020000002800000000000000000000800000000000000000000000000000000078D90000000000000100000001000000 "SIGN.MEDIA=36CEE0 Utility\MSI\Super Charger\Super Charger.exe"=0x534143500100000000000000070000002800000048B236002C71370001000000000000000000010600010000975FD891C99ECE0100000000000000000200000028000000000000000000008000000000000000000000000000000000E2040000000000000100000001000000 "C:\Program Files (x86)\PCSX2 1.2.1\pcsx2-r5875.exe"=0x53414350010000000000000007000000280000008001520038FD52000100000000000000000003067122000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000D7061A00000000000800000008000000 "C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe"=0x534143500100000000000000070000002800000040990100BA690200010000000000000000000106F5200000BFA2139DEDD1D301000000000000000002000000500000000000000000000000000000000000000000000000000000009EBE6E03000000004500000043000000000000000000004000000000000000000000000000000000CDA30D04000000000100000000000000 "C:\Program Files (x86)\GameforgeLive\GameforgeLive.exe"=0x534143500100000000000000070000002800000080150D0059020E0001000000000000000000030671220000975FD891C99ECE0100000000000000000200000028000000000000000000004000000000000000000000000000000000A8D0EB06000000000900000009000000 "C:\Fraps\fraps.exe"=0x5341435001000000000000000700000028000000B8DE2600A404270001000000000000000000020671220000975FD891C99ECE0100000000000000000200000028000000000000000000004000100000000000000000000000000000F8BC2E00000000000500000005000000 "C:\Program Files\Sony\Vegas Pro 13\vegas130.exe"=0x53414350010000000000000007000000280000002085460266D346020100000000000000000003060021000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000001FB85000000000000900000009000000 "SIGN.IE=05AD470 adblockplusie-1.2.exe"=0x534143500100000000000000070000002800000070D45A0028645B0001000000000000000000030600210000975FD891C99ECE0100000000000000000200000028000000000000000000000000000000000000000000000000000000EC820000000000000100000001000000 "SIGN.IE=0101CC0 install_flashplayer15x32_gtbd_chrd_dn_aaa_aih.exe"=0x5341435001000000000000000700000028000000C01C1000A218110001000000000000000000010600010000975FD891C99ECE0100000000000000000200000028000000000000000000000000000000000000000000000000000000D8FE0200000000000100000001000000 "SIGN.MEDIA=4858C8 setup.exe"=0x534143500100000000000000070000002800000000F04A0063731D0001000000000000000000000671220000975FD891C99ECE010000000000000000020000005000000000000000000000100000000000000000000000000000000086E801000000000004000000040000000000000080000010000000000000000000000000000000000DEA0100000000000100000000000000 "C:\Program Files (x86)\Belkin\F7D4101\V1\PBN.exe"=0x534143500100000000000000070000002800000000B00100C240020001000000000000000000000671000000975FD891C99ECE01000000000000000005000000100000000000000000000000000000000000000002000000500000000000000000000040000000000000000000000000000000000000000000000000010000000100000000000000000000000000000000000000000000000000000010000000000000000100000000000000 "C:\Program Files (x86)\Belkin\F7D4101\V1\wlansrv.exe"=0x534143500100000000000000070000002800000000900000A145010001000000000000000000000671020000975FD891C99ECE01000000000000000005000000100000000000000000000000000000000000000002000000280000000000000000000040000000000000000000000000000000004E000000000000000100000001000000 "C:\Program Files (x86)\NETGEAR\WG111v3\WG111v3.exe"=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ointSoft.exe"=0x534143500100000000000000070000002800000000900C000000000001000000000000000000010541200000975FD891C99ECE0100000000000000000200000028000000000000000000000000000000000000000000000000000000EE650000000000000100000001000000 "SIGN.MEDIA=86C0618 PointSoft.exe"=0x534143500100000000000000070000002800000000900C000000000001000000000000000000010541200000975FD891C99ECE01000000000000000002000000280000000000000000000000000400000000000000000000000000007F390000000000000200000002000000 "SIGN.IE=0D9958 amddriverdownloader.exe"=0x534143500100000000000000070000002800000058990D00E96F0E0001000000000000000000030671220000975FD891C99ECE0100000000000000000200000028000000000000000000004000000000000000000000000000000000C3AE9701000000000100000001000000 "C:\Program Files (x86)\OpenOffice 4\program\scalc.exe"=0x5341435001000000000000000700000028000000009601003E97010001000000000000000000030671220000E63F486B2AA0D20100000000000000000200000028000000000000000000000000000000000000000000000000000000BDB10300000000000A0000000A000000 "C:\Program Files (x86)\OpenOffice 4\program\soffice.exe"=0x5341435001000000000000000700000028000000001A96007C53960001000000000000000000030671220000975FD891C99ECE0100000000000000000200000028000000000000000000001000000000000000000000000000000000EC6D0000000000000100000001000000 "C:\Program Files (x86)\ANNUCAPT 64Bits\WDUNINST.EXE"=0x5341435001000000000000000700000028000000000005003DAB050003000000000000000000010671220000975FD891C99ECE0100000000000000000500000010000000000000000000000000000000000000000200000028000000000000000000000000028000000000000000800000000000350C0000000000000100000001000000010000000400000001000000 "C:\Program Files (x86)\ANNUCAPT 64Bits\AnnuCapt64bits.exe"=0x534143500100000000000000070000002800000080625000446B500001000000000000000000010673020000B395E7CF049FCE0100000000000000000500000010000000000000000000000000000000000000000200000028000000000000000000004000000000000000000000000000000000F3E90000000000000200000002000000 "SIGN.IE=0415930 Nexus Mod Manager-0.52.3.exe"=0x53414350010000000000000007000000280000003059410080B2410001000000000000000000030600210000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000014430000000000000100000001000000 "SIGN.IE=04CA13 skse_1_07_01_installer.exe"=0x534143500100000000000000070000002800000013CA04000000000001000000000000000000000671000000975FD891C99ECE01000000000000000002000000280000000000000000080040000000000000000000000000000000007D340000000000000200000002000000 "C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\skse_loader.exe"=0x5341435001000000000000000700000028000000000C02003726020001000000000000000000030671220000975FD891C99ECE0100000000000000000200000028000000000000000000000000000000000000000000000000000000BF5F4600000000000400000004000000 "SIGN.MEDIA=707C2 install\office_2007\SETUP.EXE"=0x534143500100000000000000070000002800000030110700C7F8070001000000000000000000000671020000975FD891C99ECE010000000000000000020000002800000000000000000000400000000000000000000000000000000018540400000000000100000001000000 "C:\Program Files (x86)\Razer\Razer Cortex\unins000.exe"=0x534143500100000000000000070000002800000048EB13005541140003000000000000000000030600210000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000083190000000000000100000001000000 "C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Application Installer.exe"=0x5341435001000000000000000700000028000000A0FC01005C47020001000000000000000000010600010000975FD891C99ECE01000000000000000002000000280000000000000000000000000000000000000000000000000000000A4F0000000000000200000002000000 "C:\Program Files (x86)\Air\Gip\TeeBoard\TeeBoard.exe"=0x5341435001000000000000000700000028000000002C020012BA010001000000000000000000010600010000BFA2139DEDD1D301000000000000000002000000280000000000000000000000000000000000000000000000000000004EAD0F00000000000200000002000000 "C:\Users\Timothée\AppData\LocalLow\Adblock Plus for IE\update.msi"=0x534143500100000000000000070000002800000000F400008396010001000000000000000000010500100000B395E7CF049FCE01000000000000000002000000280000000000000000000040000000000000000000000000000000000FDA0100000000000100000001000000 "SIGN.IE=0574358 vcredist_x64.exe"=0x5341435001000000000000000700000028000000584357008733580001000000000000000000000671020000975FD891C99ECE01000000000000000002000000280000000000000000000040000000000000000000000000000000008E120000000000000100000001000000 "C:\Program Files (x86)\OpenOffice 4\program\swriter.exe"=0x534143500100000000000000070000002800000000960100A619020001000000000000000000030671220000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000059610000000000000100000001000000 "C:\Program Files (x86)\Steam\SteamApps\common\Skyrim\Data\RealVision_ENB_files\RV_launcher.exe"=0x5341435001000000000000000700000028000000001C1D0000000000010000000000000000000306F1200000975FD891C99ECE0100000000000000000200000028000000000000008000000000000000000000000000000000000000C3620300000000000200000002000000 "C:\Windows\SysWOW64\XBCDSU.cpl"=0x534143500100000000000000070000002800000000C2010023F3010001000000000000000000010561200000B395E7CF049FCE010000000000000000010000000400000001000000020000002800000000000000000000000000400000000000000040000000000084810000000000000200000002000000 "C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe"=0x5341435001000000000000000700000028000000E0EC0000C9AB010001000000000000000000030671220000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000010000000000000000100000001000000 "C:\Program Files\Nexus Mod Manager\NexusClient.exe"=0x534143500100000000000000070000002800000040182C0082582C00010000000000000000000306F5220000B395E7CF049FCE010000000000000000020000002800000000000000000000000000000000000000000000000000000095160000000000000100000001000000 "C:\ProgramData\Intel\Package Cache\{1CEAC85D-2590-4760-800F-8DE5E91F3700}\Setup.exe"=0x53414350010000000000000007000000280000000030530049200C0003000000000000000000010600010000975FD891C99ECE0100000000000000000200000028000000000000000000000000000000000000000000000000000000F7180000000000000100000001000000 "SIGN.IE=0547 NA1_1737966650.bat"=0x5341435001000000000000000700000028000000006E05001C90050001000000000000000000010500100000B395E7CF049FCE010000000000000000 "C:\Program Files (x86)\Livestreamer\livestreamer.exe"=0x5341435001000000000000000700000028000000001E00006D2100000100000000000000000002067102000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000EC6D0F03000000000600000006000000 "C:\Program Files (x86)\Livestreamer\uninstall-livestreamer.exe"=0x5341435001000000000000000700000028000000DDFB00000000000001000000000000000000000671000000975FD891C99ECE01000000000000000002000000280000000000000000080040000000000000000000000000000000001C180000000000000100000001000000 "SIGN.IE=0137FF60 mbam-setup-2.0.4.1028.exe"=0x534143500100000000000000070000002800000060FF37010248380101000000000000000000020600010000975FD891C99ECE01000000000000000002000000280000000000000000000000000000000000000000000000000000007B6A4D00000000000100000001000000 "SIGN.IE=016DE028 PS2_setup.exe"=0x534143500100000000000000070000002800000028E06D0113016E0101000000000000000000010600010000975FD891C99ECE010000000000000000020000002800000000000000000000400000000000000000000000000000000048273600000000000100000001000000 "SIGN.IE=0F6BF0 DivXInstaller.exe"=0x5341435001000000000000000700000028000000F06B0F004957100001000000000000000000030671200000975FD891C99ECE0100000000000000000200000028000000000000000008004000000000000000000000000000000000685CB500000000000100000001000000 "C:\Users\Timothée\Desktop\Logiciel\livestreamer-twitch-gui\livestreamer-twitch-gui.exe"=0x5341435001000000000000000700000028000000EEA55803B61F4D0301000000000000000000030600210000B395E7CF049FCE01000000000000000002000000280000000000000000000000000000000000000000000000000000007D270000000000000100000001000000 "SIGN.IE=0C153FB airstrike2_demo.exe"=0x5341435001000000000000000700000028000000FB53C1000000000001000000000000000000010571000000975FD891C99ECE0100000000000000000200000028000000000000000008004000000000000000000000000000000000745A0000000000000100000001000000 "C:\Program Files (x86)\mIRC\mirc.exe"=0x5341435001000000000000000700000028000000005F4600C8FA460001000000000000000000030600210000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000079420300000000000100000001000000 "C:\Users\Timothée\Desktop\Logiciel\Dolphin-win-x64-v3.0-917\Dolphin.exe"=0x53414350010000000000000007000000280000000060C4005234C50001000000000000000000010673020000B395E7CF049FCE01000000000000000002000000280000000000000000000000000000000000000000000000000000009A1D0000000000000100000001000000 "SIGN.IE=0532EC8 autodetectutility.exe"=0x5341435001000000000000000700000028000000C82E53001A24540001000000000000000000030600210000975FD891C99ECE01000000000000000005000000100000000000000000000000000000000000000002000000280000000000000000000040000000000000000000000000000000009D120000000000000100000001000000 "SIGN.MEDIA=67F5F6D7 T-MSX6DEUC_2001.0.exe"=0x53414350010000000000000007000000280000004A37E902E436020001000000000000000000010600010000975FD891C99ECE01000000000000000002000000280000000000000080000000000000000000000000000000000000006C5E0000000000000100000001000000 "SIGN.MEDIA=84128179 setup.exe"=0x53414350010000000000000007000000280000005ADC2A000000000001000000000000000000010600010000975FD891C99ECE0100000000000000000200000028000000000000000000004000000000000000000000000000000000F2F62100000000000100000001000000 "SIGN.IE=05E0770 adblockplusie-1.4.exe"=0x534143500100000000000000070000002800000070075E000E8D5E0001000000000000000000030600210000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000058BF0000000000000200000002000000 "C:\Program Files (x86)\Air\Gip\TMSViewer\TMSViewer.exe"=0x5341435001000000000000000700000028000000002C020012BA010001000000000000000000010600010000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000059DA0200000000000100000001000000 "SIGN.IE=010F1CC 7z920.exe"=0x5341435001000000000000000700000028000000CCF110000000000001000000000000000000000671000000975FD891C99ECE010000000000000000020000002800000000000000000800400000000000000000000000000000000098130000000000000100000001000000 "C:\Program Files (x86)\Project64 2.2\Project64.exe"=0x534143500100000000000000070000002800000000D213000000000001000000000000000000030671220000975FD891C99ECE01000000000000000002000000280000000000000000000000000000000000000000000000000000000FC50800000000000200000002000000 "C:\Program Files (x86)\DOSBox-0.74\DOSBox.exe"=0x534143500100000000000000070000002800000000E03800B5C9390001000000000000000000010671200000E63F486B2AA0D20100000000000000000200000028000000000000000000001000000000000000000000000000000000C6EF1900000000001800000018000000 "C:\Program Files\DAEMON Tools Lite\DTLite.exe"=0x5341435001000000000000000700000028000000F038550021A7550001000000000000000000030673220000B395E7CF049FCE01000000000000000002000000280000000000000000000000000000000000000000000000000000008B980900000000000100000001000000 "SIGN.MEDIA=71006432 setup.exe"=0x534143500100000000000000070000002800000094270C000000000001000000000000000000010600210000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000064540100000000000100000001000000 "C:\Games\WarCraft 3\Warcraft III.exe"=0x5341435001000000000000000700000028000000003004000000000001000000000000000000010571000000975FD891C99ECE010000000000000000020000002800000000000000000000900004004000000000000000000000000032320200000000000100000001000000 "C:\Games\WarCraft 3\Frozen Throne.exe"=0x5341435001000000000000000700000028000000003004000000000001000000000000000000010571000000975FD891C99ECE0100000000000000000200000028000000000000000000000000040000000000000000000000000000CB19C000000000000500000005000000 "C:\Games\WarCraft 3\World Editor.exe"=0x5341435001000000000000000700000028000000001001000000000001000000000000000000010571000000975FD891C99ECE010000000000000000020000002800000000000000000000000004000000000000000000000000000093400A00000000000100000001000000 "C:\Program Files (x86)\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe"=0x5341435001000000000000000700000028000000005604000000000001000000000000000000030600210000B395E7CF049FCE0100000000000000000200000028000000000000000000000000000000000000000000000000000000F6A10800000000000100000001000000 "C:\Python27\pythonw.exe"=0x5341435001000000000000000700000028000000006A00003EBD000001000000000000000000030671220000975FD891C99ECE01000000000000000002000000280000000000000000000000000000000000000000000000000000008AA10100000000000200000002000000 "C:\Python27\python.exe"=0x5341435001000000000000000700000028000000006800008C9800000100000000000000000003067322000067077CBAC54CD4010000000000000000020000002800000000000000000000000000000000000000000000000000000063298401000000008701000087010000 "C:\Games\Gang Beasts v0.2.5a\Gang Beasts.exe"=0x534143500100000000000000070000002800000020ABF5009A07F60001000000000000000000030600210000975FD891C99ECE0100000000000000000200000028000000000000000000000000000000000000000000000000000000B4B11200000000000300000003000000 "C:\Games\10 Second Ninja v1.0.12\10 Second Ninja.exe"=0x534143500100000000000000070000002800000000082F0014AB2F0001000000000000000000030671220000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000094BB0900000000000600000006000000 "C:\Games\0rbitalis.v1.0\0RBITALIS.exe"=0x534143500100000000000000070000002800000000F001006793010001000000000000000000010600010000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000041400E00000000000200000002000000 "C:\Program Files (x86)\Microsoft Office\Office12\MSACCESS.EXE"=0x534143500100000000000000070000002800000070FB96003CC9970001000000000000000000010671220000975FD891C99ECE0100000010000000000200000028000000000000000000001004000000000000000000000000000000F36C0000000000000100000001000000 "C:\Program Files\Logitech Gaming Software\LU_1\LogitechUpdate.exe"=0x534143500100000000000000020000002800000000000000000000000000000000000000000000000000000084EDBB020000000002000000020000000700000028000000188D1F00D4662000010000000000000000000206712200000261329FFFBAD0010000008000000000 "C:\Program Files (x86)\Opera\launcher.exe"=0x534143500100000000000000070000002800000078DC0D0079A20E0001000000000000000000030600210000975FD891C99ECE010000000000000000020000002800000000000000800000000000000000000000000000000000000041E46700000000000200000002000000 "C:\Games\1849 v1.5.1 DLC\1849.exe"=0x5341435001000000000000000700000028000000002C02004E6E010001000000000000000000010600010000975FD891C99ECE01000000000000000002000000280000000000000000000000101000020000000000000000000000000E150000000000000100000001000000 "SIGN.MEDIA=C97A7387 AutoRun.exe"=0x534143500100000000000000070000002800000088E17F007CBE800001000000000000000000010600210000975FD891C99ECE010000000000000000020000002800000000000000800000000000000000000000000000000000000079337002000000000200000002000000 "C:\Games\CastleCrashers v1.5 3DLC\castle.exe"=0x534143500100000000000000070000002800000010781D0074D1170001000000000000000000030671220000975FD891C99ECE010000000000000000020000002800000000000000000000000000000000000000000000000000000047657C00000000000300000003000000 "C:\Games\Audiosurf 2 v14.06.2015\Audiosurf2.exe"=0x53414350010000000000000007000000280000000066B1000000000001000000000000000000030671200000975FD891C99ECE01000000000000000002000000500000000000000000800020000000000000000000000000000000009A591700000000000100000001000000000000000000000000000040000000000000000000000000BF110400000000000100000000000000 "C:\TheKlub17\Binaries\TK17_Launcher.exe"=0x534143500100000000000000070000002800000036C601000000000001000000000000000000010600010000975FD891C99ECE010000000000000000020000002800000000000000800000000000000000000000000000000000000073380700000000000400000004000000 "C:\Program Files (x86)\Mumble\mumble.exe"=0x534143500100000000000000070000002800000040015700F4C55700010000000000000000000106000100000261329FFFBAD001000000000000000002000000280000000000000000000040000000000000000000000000000000001BD30E00000000000100000001000000 "C:\Program Files (x86)\puush\puush.exe"=0x534143500100000000000000070000002800000048AE08007617090001000000000000000000000AF12200000261329FFFBAD001000000000000000005000000100000000000000000000000000000000000000002000000280000000000000000000040000000000000000000000000000000007D000000000000000100000001000000 "C:\Games\Hacknet v1.23\Hacknet.exe"=0x53414350010000000000000007000000280000000018050000000000010000000000000000000106F12000000261329FFFBAD0010000000000000000020000002800000000000000000000000000000000000000000000000000000004710100000000000300000003000000 "C:\Users\Timothée\AppData\Local\MEGAsync\MEGAsync.exe"=0x5341435001000000000000000700000028000000C86D480000D2480001000000000000000000000A712200000261329FFFBAD001000000000000000002000000280000000000000000000000000000000000000000000000000000005EC53D01000000000200000002000000 "C:\Games\Volo Airsport v3.5\volo_airsport.exe"=0x5341435001000000000000000700000028000000203DF100619CF10001000000000000000000000A712000000261329FFFBAD001000000000000000002000000280000000000000000000000000000400000000000000000000000008D1B1900000000000100000001000000 "C:\Program Files\DAEMON Tools Lite\DTLauncher.exe"=0x534143500100000000000000070000002800000058812E0037222F0001000000000000000000000A73220000DB80FDAC2839D30100000000000000000200000028000000000000000000000000000000000000000000000000000000AF850900000000000600000006000000 "C:\Program Files (x86)\The Beginner's Guide\beginnersguide.exe"=0x5341435001000000000000000700000028000000007806009A800600010000000000000000000106710000000261329FFFBAD0010000000000000000020000002800000000000000000000000000000000000000000000000000000059805600000000000100000001000000 "C:\Program Files (x86)\Bethesda Studios\Fallout 4\Fallout4Launcher.exe"=0x5341435001000000000000000700000028000000002E45000000000001000000000000000000000A73220000078CBF8EFFBAD00100000000000000000500000010000000000000000000000000000000000000000200000028000000000000000000000000000000000000000000000000000000B4264800000000000B0000000B000000 "C:\Program Files (x86)\Mozilla Firefox\firefox.exe"=0x534143500100000000000000070000002800000070C00500FC9F060001000000000000000000000A00210000E63F486B2AA0D2010000000100000000 "SIGN.MEDIA=5A4B13E Autorun.exe"=0x534143500100000000000000070000002800000000580600EBAE06000100000000000000000001067102000019B4C529E312D1010000000000000000020000002800000000000000800000000000000000000000000000000000000062850C00000000000300000003000000 "SIGN.MEDIA=F0213 Startup.exe"=0x534143500100000000000000070000002800000000DE010017C60200010000000000000000000306712200000261329FFFBAD0010000000000000000020000002800000000000000000000000000000000000000000000000000000096240200000000000200000002000000 "C:\illusion\HaremMate\clodHmLauncher.exe"=0x5341435001000000000000000700000028000000007A10000000000001000000000000000000000AF522000033504C2B57DFD10100000000000000000200000050000000000000000000000000000000000000000000000000000000CCD10C000000000003000000010000000000000080000000000000000000000000000000000000003BB40700000000000200000000000000 "SIGN.IE=04B7CE0 autodetectutility.exe"=0x5341435001000000000000000700000028000000E07C4B0087C24B0001000000000000000000000A002100000261329FFFBAD00100000000000000000200000028000000000000000000004000000000000000000000000000000000ABEC0800000000000100000001000000 "C:\AMD\Packages\Apps\Radeon-Crimson-15.12-raptr\RaptrInstaller\amd_ge_installer.exe"=0x5341435001000000000000000700000028000000C8600300F90904000100000000000000000001060001000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000FF5E0200000000000100000001000000 "C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe"=0x5341435001000000000000000700000028000000D0620300438703000100000000000000000003067102000019B4C529E312D101000000000000000002000000280000000000000080000000001000000000000000000000000000006376D502000000000400000004000000 "C:\Program Files (x86)\Worlds\BowieWorld by Worlds.com\run.exe"=0x534143500100000000000000070000002800000000C00000000000000100000000000000000001057120000019B4C529E312D1010000000000000000050000001000000000000000000000000003010500000000020000005000000000030105000000600004000000000000000000000000000059F40F00000000000200000001000000000000000000000000040000000000000000000000000000577C1000000000000100000000000000 "SIGN.MEDIA=18B04E0 Setup.exe"=0x534143500100000000000000070000002800000088720100515002000100000000000000000001067102000019B4C529E312D1010000000000000000020000002800000000000000000000400000000000000000000000000000000012960400000000000100000001000000 "C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CSRBtStartApp.exe"=0x5341435001000000000000000700000028000000D0CE0000AFB901000100000000000000000001067322000059193B14E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000554D0000000000000100000001000000 "C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrCplHelper.exe"=0x5341435001000000000000000700000028000000C8A40B00D6360C000100000000000000000001067322000059193B14E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000AC000000000000000100000001000000 "C:\Games\The Witness\Launcher.exe"=0x534143500100000000000000070000002800000000F427000000000001000000000000000000000A7122000019B4C529E312D1010000000000000000020000002800000000000000A0000060000000000000000000000000000000004EF61C00000000000100000001000000 "C:\Program Files (x86)\Plantronics\Spokes3G\PLTHub.exe"=0x534143500100000000000000070000002800000018B431000D3C320001000000000000000000000A7122000019B4C529E312D101000000000000000002000000280000000000000000000000000000000000000000000000000000003F000000000000000100000001000000 "C:\Program Files\MotioninJoy\unins000.exe"=0x5341435001000000000000000700000028000000C3E71100000000000300000000000000000001060001000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000034140000000000000100000001000000 "C:\Games\Move or Die v1.1.5\SmartSteamLoader.exe"=0x53414350010000000000000007000000280000000088030085E9030001000000000000000000000A7122000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000063A90900000000000400000004000000 "C:\Games\Duck Game v2015.06.20\DuckGame.exe"=0x5341435001000000000000000700000028000000004E1B000000000001000000000000000000000AF122000019B4C529E312D101000000000000000005000000100000000000000000000000000000000000000002000000500000000000000000000040000000000000000000000000000000001E080000000000000200000001000000000000000000000010000000000000000000000000000000BE170000000000000300000000000000 "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSOXMLED.EXE"=0x534143500100000000000000070000002800000010E70000EEE0010001000000000000000000000671020000DB80FDAC2839D30100000000000000000200000028000000000000000000000000000000000000000000000000000000B8880000000000000B0000000B000000 "C:\Users\Timothée\Desktop\Logiciel\dectalk440\speak.EXE"=0x534143500100000000000000070000002800000000BE0A00000000000100000000000000000001057100000019B4C529E312D10100000000000000000200000028000000000000000000000000000200000000000000000000000000BA6F1200000000000100000001000000 "C:\Program Files (x86)\WinSCP\WinSCP.exe"=0x5341435001000000000000000700000028000000A07BB800D754B90001000000000000000000000A0021000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000008B0EBD04000000000B0000000B000000 "C:\Users\Timothée\AppData\Local\Tempdivx9617\DivXSetup.exe"=0x5341435001000000000000000700000028000000F0730F00C737100001000000000000000000000A0021000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000DF181200000000000100000001000000 "C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe"=0x5341435001000000000000000700000028000000E0CF0C0095020D0001000000000000000000000A7120000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000BB000000000000000200000002000000 "C:\Program Files\DAEMON Tools Lite\DTAgent.exe"=0x5341435001000000000000000700000028000000582D440097B0440001000000000000000000000A7322000059193B14E312D101000000000000000002000000280000000000000000000000000000000000000000000000000000008E120000000000000500000005000000 "SIGN.MEDIA=9025EF8C setup.exe"=0x534143500100000000000000070000002800000078624700000000000100000000000000000001060001000019B4C529E312D10100000000000000000200000028000000000000000000004000000000000000000000000000000000E00E0100000000000700000007000000 "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDPrefs.exe"=0x534143500100000000000000070000002800000000F40C000000000001000000000000000000000A7120000019B4C529E312D10100000000000000000200000050000000000000000000000000000000000000000000000000000000E6200000000000000500000002000000000000000000004000000000000000000000000000000000F00C0000000000000100000000000000 "SIGN.MEDIA=238762 InstallNavi.exe"=0x5341435001000000000000000700000028000000208723002DC223000100000000000000000003060001000019B4C529E312D10100000000000000000200000028000000000000000000004000000000000000000000000000000000FBA23101000000000100000001000000 "C:\Users\Timothée\AppData\Local\Apps\2.0\WG3RCZZL.WB2\XVOTGDEL.G21\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe"=0x5341435001000000000000000700000028000000005C1D0028E01D0001000000000000000000000AF522000059193B14E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000066A24A01000000000300000003000000 "C:\Program Files (x86)\OBS\OBS.exe"=0x5341435001000000000000000700000028000000507214009AC3140001000000000000000000000A0021000033504C2B57DFD1010000000000000000020000002800000000000000000000000000000000000000000000000000000001FFE701000000000400000004000000 "C:\Program Files (x86)\GanttProject-2.7\ganttproject.exe"=0x5341435001000000000000000700000028000000008E0000DD62010001000000000000000000000A7120000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000090380100000000000100000001000000 "C:\Users\Timothée\AppData\Local\Tempdivx1fd5\DivXSetup.exe"=0x5341435001000000000000000700000028000000C8870F00920E100001000000000000000000000A0021000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000091CB3700000000000100000001000000 "C:\Users\Timothée\AppData\Local\AMD\CN\cimmanifest.exe"=0x5341435001000000000000000700000028000000A0F601009A6002000100000000000000000003060001000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000042020000000000000500000005000000 "C:\Undertale\UNDERTALE.exe"=0x5341435001000000000000000700000028000000002A3A00A77D3B0001000000000000000000000A7122000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000012F20D00000000000100000001000000 "C:\AMD\Packages\Apps\Radeon-Crimson-16.3.2-vulkanrt-64bit\VulkanRT\VulkanRT.exe"=0x5341435001000000000000000700000028000000E8AAD5008288D6000100000000000000000003060001000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000C83F0000000000000200000002000000 "SIGN.MEDIA=D9D9339D setup.exe"=0x534143500100000000000000070000002800000091001200000000000100000000000000000003060001000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000071520100000000000100000001000000 "C:\Program Files (x86)\DeadCore\DeadCore.exe"=0x5341435001000000000000000700000028000000000EB000000000000100000000000000000003067100000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000C1C92900000000000100000001000000 "SIGN.MEDIA=BE2AEC5 MidnightRacing-Setup.exe"=0x53414350010000000000000007000000280000007D55F105000000000100000000000000000000067122000019B4C529E312D10100000000000000000200000028000000000000000000004000000000000000000000000000000000519B0100000000000100000001000000 "C:\Program Files (x86)\Midnight Racing\Launch.exe"=0x5341435001000000000000000700000028000000003E0500000000000100000000000000000000067120000019B4C529E312D101000000000000000002000000280000000000000080000000000000000000000000000000000000002D880300000000000300000003000000 "C:\Program Files (x86)\Midnight Racing\racing.exe"=0x534143500100000000000000070000002800000000000C00000000000100000000000000000001057120000019B4C529E312D1010000000000000000020000007800000000000A040000006000000040000000000000000000000000BBF7070000000000010000000100000000020105020000600000000000000000000000000000000024E7000000000000010000000000000000000000000000000000000000000000000000000000000056450000000000000200000000000000 "C:\Windows\System32\svchost.exe"=0x5341435001000000000000000700000028000000A8AB000038F5000001000000010000000000000A7322000059193B14E312D1010000000000000000 "C:\Users\Timothée\Documents\FoFiX\FoFiX.exe"=0x5341435001000000000000000700000028000000008A03000000000001000000000000000000000671000000E63F486B2AA0D20100000000000000000200000028000000000000000000000000000000000000000000000000000000ADA51900000000000800000008000000 "SIGN.MEDIA=4DAD23C1 Guitar Hero World Tour Installer.exe"=0x534143500100000000000000070000002800000090AD48004B4949000100000000000000000000067122000019B4C529E312D10100000000000000000200000028000000000000000000004000000000000000000000000000000000287F1600000000000100000001000000 "C:\Program Files (x86)\Aspyr\Guitar Hero World Tour\GHWT.exe"=0x534143500100000000000000070000002800000000D44101A0AF81000100000000000000000000067120000033504C2B57DFD10100000000000000000200000050000000000301050000006000000000000000000000000000000000318CC900000000002B0000002B0000000000000000000000000000000000000000000000000000003D590300000000000200000000000000 "C:\Users\Timothée\AppData\Local\Tempdivx575f\DivXSetup.exe"=0x5341435001000000000000000700000028000000C8870F00920E100001000000000000000000000A0021000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000DAE70B00000000000100000001000000 "C:\Users\Timothée\AppData\Local\Tempdivx190a\DivXSetup.exe"=0x5341435001000000000000000700000028000000C8870F00920E100001000000000000000000000A0021000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000045000200000000000100000001000000 "C:\Users\Timothée\AppData\Local\Tempdivx8f4b\DivXSetup.exe"=0x5341435001000000000000000700000028000000C8870F00920E100001000000000000000000000A0021000019B4C529E312D101000000000000000002000000280000000000000000000000000000000000000000000000000000009BD21F00000000000100000001000000 "C:\Program Files (x86)\Phase Shift\phase_shift.exe"=0x534143500100000000000000070000002800000000DC1B000000000001000000000000000000000A71220000E63F486B2AA0D2010000000000000000020000002800000000000000000000000000000000000000000000000000000077113100000000003800000038000000 "C:\Program Files (x86)\Batch Picture Resizer\PicResizer.exe"=0x5341435001000000000000000700000028000000B81D8B01ADE98B0101000000000000000000000A7122000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000BE1E0100000000000100000001000000 "SIGN.MEDIA=2E1B627D setup.exe"=0x534143500100000000000000070000002800000000D80000454B01000100000000000000000000067122000019B4C529E312D1010000000000000000020000002800000000000000800000000000000000000000000000000000000072171000000000000100000001000000 "SIGN.MEDIA=546D4800 setup.exe"=0x534143500100000000000000070000002800000000F40000B9D601000100000000000000000000067122000019B4C529E312D10100000000000000000200000028000000000000008000000000000000000000000000000000000000D8C96600000000000100000001000000 "C:\Program Files (x86)\GalaxyClient\GalaxyClient.exe"=0x534143500100000000000000070000002800000040A83C0091AC3C0001000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000536CA901000000000D0000000D000000 "C:\ProgramData\GOG.com\Galaxy\redists\GalaxyUpdater.exe"=0x5341435001000000000000000700000028000000400610003A66100001000000000000000000000A71220000BFA2139DEDD1D301000000800000000002000000280000000000000000000000000000000000000000000000000000000EE30300000000000E0000000E000000 "C:\Users\Timothée\AppData\Local\Tempdivx2825\DivXSetup.exe"=0x5341435001000000000000000700000028000000C8E924009DED240001000000000000000000000A0021000019B4C529E312D1010000000000000000050000001000000000000000000000000000000000000000020000002800000000000000000000000000000000000000000000000000000083330000000000000100000001000000 "C:\Users\Timothée\AppData\Local\Tempdivx06b1\DivXSetup.exe"=0x5341435001000000000000000700000028000000C8E924009DED240001000000000000000000000A0021000019B4C529E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000ED961B00000000000100000001000000 "C:\Program Files (x86)\Pokemon Showdown\pokemonshowdown.exe"=0x5341435001000000000000000700000028000000004CBD020000000001000000000000000000000A00210000E63F486B2AA0D20100000000000000000200000028000000000000000000000000000000000000000000000000000000F736B102000000001400000014000000 "C:\Program Files (x86)\InstallShield Installation Information\{852E893E-E4FD-45BB-8B17-72ADDF686974}\setup.exe"=0x534143500100000000000000070000002800000000B00500000000000300000000000000000000067102000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000078830000000000000100000001000000 "C:\Program Files (x86)\NETGEAR\WN111\wn111.exe"=0x53414350010000000000000007000000280000000030260004F926000100000000000000000000067120000033504C2B57DFD101000000000000000002000000280000000000000000000000000000000000000000000000000000001042A503000000003500000035000000 "C:\GOG Games\No Man's Sky\LanguageSetup.exe"=0x534143500100000000000000070000002800000070E0FF0018E6FF0001000000000000000000000A6120000019B4C529E312D10100000000000000000500000010000000000000000000000000000000000800000200000028000000000000000008004000000000000000000000000000000000D0140000000000000100000001000000 "C:\GOG Games\No Man's Sky\Binaries\NMS.exe"=0x534143500100000000000000070000002800000000CC65017197660101000000000000000000000A7322000059193B14E312D101000000000000000002000000500000000000000010000020000000000000000000000000000000004E549701000000000B00000007000000000000001000006000000000000000000000000000000000B5758200000000000100000000000000 "C:\Users\Timothée\Desktop\emulation\Amiga CD 32\WinUAE_3.3.0_64_Bits_Fr\winuae64.exe"=0x534143500100000000000000070000002800000000DEDD000000000001000000000000000000000A0021000059193B14E312D10100000000000000000200000028000000000000000000000000000000000000000000000000000000B0110E00000000000700000007000000 "C:\Users\Timothée\Desktop\emulation\amstrad CPC\JavaCPC64.exe"=0x534143500100000000000000070000002800000000F60400000000000100000000000000000003060001000059193B14E312D10100000000000000000200000028000000000000000000000000020200000000000000000000000000B61B0000000000000100000001000000 "C:\Users\Timothée\Desktop\emulation\ps2\les saves\mymc-alpha-2.6\mymc.exe"=0x534143500100000000000000070000002800000000AC0000000000000100000000000000000001057100000019B4C529E312D101000000000000000002000000280000000000000000000000000402000000000000000000000000008B4B0100000000000100000001000000 "C:\Users\Timothée\Desktop\jeux\Emulation\Gamecub-wii\Dolphin.exe"=0x534143500100000000000000070000002800000000A8CD005C9ACE000100000000000000000002067302000059193B14E312D101000000000000000002000000280000000000000000000000000000000000000000000000000000001CF80000000000000100000001000000 "C:\Program Files\Dolphin\Dolphin.exe"=0x5341435001000000000000000700000028000000A8CBED002A17EE0001000000000000000000000A73220000BFA2139DEDD1D301000000000000000002000000280000000000000000000000800000000000000000000000000000003F069803000000005500000055000000 "C:\GOG Games\No Man's Sky\NMSManager.exe"=0x5341435001000000000000000700000028000000FB296200314C07000100000000000000000003060001000019B4C529E312D1010000000000000000020000002800000000000000000000000000000000000000000000000000000022320C00000000000200000002000000 "C:\Program Files\TeamSpeak 3 Client\package_inst.exe"=0x5341435001000000000000000700000028000000183F07009938080001000000000000000000000A7322000059193B14E312D1010000000000000000020000002800000000000000000000400000000000000000000000000000000067280000000000000100000001000000 "C:\Users\Timothée\Desktop\jeux\vine\Vinesauce ROM Corruptor.exe"=0x534143500100000000000000070000002800000000C003000000000001000000000000000000000AF1220000E63F486B2AA0D201000000000000000002000000280000000000000000000000000000000000000000000000000000001D100000000000000200000002000000 "C:\Users\Timothée\Desktop\jeux\vine\wtf\Start with AutoKillSwitch (RECOMMENDED).bat"=0x53414350010000000000000007000000280000000026040017C9040001000000000000000000010500100000E78E163C2AA0D2010000000000000000 "C:\Users\Timothée\Desktop\jeux\vine\wtf\Start.bat"=0x534143500100000000000000070000002800000000920300914704000100000000000000000001050010000059193B14E312D1010000000000000000 "C:\Program Files (x86)\Pokemon Uranium Team\Pokemon Uranium 1.0\Patcher.exe"=0x534143500100000000000000070000002800000000D009004D2D0A000100000000000000000001057100000033504C2B57DFD10100000080000000000500000010000000000000000000000000000000000800000200000028000000000000000008004000000000000000000000000000000000F8CE0000000000000100000001000000 "C:\Program Files (x86)\Pokemon Uranium Team\Pokemon Uranium 1.0\Uranium.exe"=0x534143500100000000000000070000002800000000B00100287302000100000000000000000001057100000033504C2B57DFD10100000000000000000200000028000000000000000000000000000000000000000000000000000000EBF16E00000000000200000002000000 "C:\Users\Timothée\Desktop\emulation\gba\VisualBoyAdvance.exe"=0x534143500100000000000000070000002800000050201E00000000000100000000000000000001057100000033504C2B57DFD1010000000000000000020000002800000000000000000000000004000000000000000000000000000072C70E00000000000100000001000000 "SIGN.MEDIA=19EF346 setup.exe"=0x534143500100000000000000070000002800000000BA13000000000001000000000000000000000A0021000033504C2B57DFD10100000000000000000200000028000000000000000000000000000000000000000000000000000000BB1F0700000000000200000002000000 "C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe"=0x534143500100000000000000070000002800000088819E00FA0E9F0001000000000000000000000A00210000D5B3B31A57DFD10100000000000000000200000028000000000000000000004000000000000000000000000000000000BE063D00000000000400000004000000 "C:\Program Files\Logitech\SetPointP\LogiAppBroker.exe"=0x534143500100000000000000070000002800000078DC0500A2D1060001000000000000000000000A73220000DB80FDAC2839D301000000000000000002000000280000000000000000000040000000000000000000000000000000008963F00A000000000200000002000000 "C:\Program Files\Common Files\LogiShrd\sp6\LU1\LULnchr.exe"=0x534143500100000000000000070000002800000018590500F752060001000000000000000000020671220000DB80FDAC2839D3010000008000000000020000002800000000000000000000000000000000000000000000000000000035CE3D00000000003205000032050000 "C:\GOG Games\Clustertruck\Clustertruck.exe"=0x5341435001000000000000000700000028000000003E00010000000001000000000000000000000A0021000033504C2B57DFD10100000000000000000200000028000000000000001000002000000000000000000000000000000000DC7A2B00000000000700000007000000 "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorUI.exe"=0x5341435001000000000000000700000028000000384A0A00BA6A0A0001000000000000000000000AF1220000BFA2139DEDD1D30100000000000000000200000028000000000000008000004000000000000000000000000000000000D8A20000000000000500000005000000 "C:\Users\Timothée\Desktop\jeux\game vite fait\Rogue Singularity v0.50.1665\Launcher.exe"=0x5341435001000000000000000700000028000000008C0300F40A040001000000000000000000000A7122000033504C2B57DFD10100000000000000000200000028000000000000008000000000000000000000000000000000000000300B2000000000000200000002000000 "C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_ep64.exe"=0x5341435001000000000000000700000028000000D09C0200CA90030001000000000000000000000A73220000D5B3B31A57DFD10100000000000000000200000028000000000000000000004000000000000000000000000000000000FF105C08000000000100000001000000 "C:\Program Files (x86)\OpenOffice 4\program\simpress.exe"=0x53414350010000000000000007000000280000000096010033C001000100000000000000000003067102000033504C2B57DFD10100000000000000000200000028000000000000000000000000000000000000000000000000000000D9850000000000000300000003000000 "C:\Users\Timothée\Desktop\jeux\game vite fait\Laser Disco Defenders\Laser Disco Defenders.exe"=0x5341435001000000000000000700000028000000006003010000000001000000000000000000000A0021000033504C2B57DFD1010000000000000000020000002800000000000000000000000000000000000000000000000000000063920200000000000100000001000000 "C:\Users\Timothée\AppData\Roaming\YGOPro DevPro Launcher\ygopro.exe"=0x534143500100000000000000070000002800000000024B000000000001000000000000000000000A7122000033504C2B57DFD1010000000000000000020000002800000000000000000000000000000000000000000000000000000073210000000000000100000001000000 "C:\Users\Timothée\Desktop\jeux\game vite fait\Insatia v4.0\insatia.exe"=0x5341435001000000000000000700000028000000B0D123007364240001000000000000000000000A0021000033504C2B57DFD10100000000000000000200000028000000000000000000000000000000000000000000000000000000037E1200000000000100000001000000 "C:\Users\Timothée\Desktop\jeux\RTC078\START with AutoKillSwitch (RECOMMENDED).bat"=0x5341435001000000000000000700000028000000008E0300E25F040001000000000000000000010500100000D5B3B31A57DFD1010000000000000000 "C:\Users\Timothée\Desktop\jeux\RTC078\Crash-loop breaker.bat"=0x5341435001000000000000000700000028000000008E0300E25F040001000000000000000000010500100000D5B3B31A57DFD1010000000000000000 "C:\AMD\radeon-crimson-relive-17.2.1-minimalsetup-170221_64bit\Bin64\RadeonInstaller.exe"=0x5341435001000000000000000700000028000000003E8B0065A98B0001000000000000000000000A00210000D5B3B31A57DFD1010000000000000000 "C:\Program Files (x86)\Twitch Launcher\TwitchLauncherUAC.exe"=0x5341435001000000000000000700000028000000189601004F59020001000000000000000000000A8021000033504C2B57DFD10100000000000000000500000010000000000000000000000000000000800000000200000028000000000000008000004000000000000000000000000000000000651E0000000000000100000001000000 "C:\Program Files (x86)\Twitch Launcher\autoupdate.exe"=0x5341435001000000000000000700000028000000B0428E0004D18E0001000000000000000000000A0021000033504C2B57DFD10100000080000000000200000028000000000000000000000000000000000000000000000000000000E7180000000000000100000001000000 "C:\Program Files (x86)\Origin\legacyPM\OriginLegacyCLI.exe"=0x534143500100000000000000070000002800000070AD0C00F9F30C0001000000000000000000010600010000E63F486B2AA0D201000000000000000002000000280000000000000000000000000000000000000000000000000000001F000000000000000500000005000000 "C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UplayService.exe"=0x5341435001000000000000000700000028000000C8423300147F330001000000000000000000000A7122000033504C2B57DFD10100000000000000000200000028000000000000008000000000000000000000000000000000000000E0070000000000000100000001000000 "C:\AMD\radeon-crimson-relive-17.4.4-minimalsetup-170504_64bit\Bin64\RadeonInstaller.exe"=0x5341435001000000000000000700000028000000884F8C00D9998C0001000000000000000000000A00210000D5B3B31A57DFD1010000000000000000 "C:\Windows\twain_32\escndv\escndv.exe"=0x534143500100000000000000070000002800000008EE0200C6C703000100000000000000000001067120000033504C2B57DFD10100000000000000000200000028000000000000000000000000000000000000000000000000000000929E0000000000000100000001000000 "C:\Users\Timothée\Desktop\jeux\OSU\osu!.exe"=0x534143500100000000000000070000002800000038DE4400026945000100000000000000000003068001000033504C2B57DFD1010000000000000000020000002800000000000000000000000000000000000000000000000000000017850800000000000100000001000000 "C:\AMD\radeon-crimson-relive-17.5.2-minimalsetup-170518_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088478C00C64F8C0001000000000000000000000A00210000D5B3B31A57DFD1010000000000000000 "C:\Program Files\CCleaner\uninst.exe"=0x534143500100000000000000070000002800000008740200FA8A02000300000000000000000001060001000033504C2B57DFD1010000000000000000020000002800000000000000000000000000000000000000000000000000000065110000000000000100000001000000 "C:\Program Files (x86)\Skype\Phone\Skype.exe"=0x5341435001000000000000000700000028000000D8EBA6014DE0A70101000000000000000000000A00210000E63F486B2AA0D20100000000000000000200000028000000000000000000001000000000000000000000000000000000B3535501000000000700000007000000 "C:\Games\Gang Beasts v0.5.6\VT_Launcher.exe"=0x5341435001000000000000000700000028000000008C03001880040001000000000000000000000A7122000033504C2B57DFD1010000000000000000020000002800000000000000800000000000000000000000000000000000000086F52200000000000300000003000000 "C:\Users\Timothée\Desktop\emulation\gba 2\mGBA-0.5.2-2016-12-31-win32\mGBA.exe"=0x53414350010000000000000007000000280000001036C70112ECC70101000000000000000000000A6120000033504C2B57DFD1010000000000000000020000002800000000000000000000000000000000000000000000000000000030491000000000000800000008000000 "C:\Users\Timothée\Desktop\emulation\gba 2\mGBA-0.5.2-2016-12-31-win32\tsukuyomi.exe"=0x534143500100000000000000070000002800000000740200D50E03000100000000000000000000067100000033504C2B57DFD10100000000000000000200000028000000000000000000000000000000000000000000000000000000AAB40000000000000300000003000000 "C:\Users\Timothée\Desktop\emulation\gba 2\mGBA-0.5.2-2016-12-31-win32\NUPS.exe"=0x53414350010000000000000007000000280000000038030000000000010000000000000000000006F5020000D5B3B31A57DFD10100000000000000000200000028000000000000000000000000000000000000000000000000000000097E0000000000000400000004000000 "C:\AMD\radeon-crimson-relive-17.6.1-minimalsetup-170609_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088498C00E18E8C0001000000000000000000000A00210000D5B3B31A57DFD1010000000000000000 "C:\Program Files (x86)\Samsung\Kies3\Kies3.exe"=0x5341435001000000000000000700000028000000B00AA1008FB4A10001000000000000000000000A71220000BFA2139DEDD1D3010000000000000000020000002800000000000000000000000000000000000000000000000000000017AF0100000000000500000005000000 "SIGN.MEDIA=528D6BD0 setup.exe"=0x53414350010000000000000007000000280000007FF989000000000001000000000000000000000A0021000033504C2B57DFD1010000000000000000020000002800000000000000000000000000000000000000000000000000000052E10100000000000200000002000000 "C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE"=0x5341435001000000000000000700000028000000E0A0C6006731C70001000000000000000000000A71220000E63F486B2AA0D2010000000100000000 "C:\Program Files\Windows Mail\wab.exe"=0x534143500100000000000000070000002800000000E40700173D080001000000010000000000000A63220000E78E163C2AA0D2010000000000000000 "C:\AMD\radeon-crimson-relive-17.7.2-minimalsetup-170727_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088113D00E3D83D0001000000000000000000000A00210000E78E163C2AA0D2010000000000000000 "C:\AMD\radeon-crimson-relive-17.8.1-minimalsetup-170821_64bit\Bin64\RadeonInstaller.exe"=0x5341435001000000000000000700000028000000884F3D00CA873D0001000000000000000000000A00210000E78E163C2AA0D20100000000000000000200000028000000000000000000004000000000000000000000000000000000F67A0800000000000100000001000000 "C:\Program Files\Oracle\VirtualBox\VirtualBox.exe"=0x53414350010000000000000007000000280000001052100007E0100001000000000000000000000A73200000E78E163C2AA0D20100000000000000000200000028000000000000000000000000000000000000000000000000000000EE2C8D00000000000900000009000000 "SIGN.MEDIA=87D3A1D menu.exe"=0x534143500100000000000000070000002800000001740200A1DF000001000000000000000000010671000000E63F486B2AA0D2010000000000000000020000005000000000000000000000000000000000000000000000000000000033020000000000000200000002000000000000008000000000000000000000000000000000000000DB000000000000000100000000000000 "SIGN.MEDIA=87D3A1D Lite.exe"=0x5341435001000000000000000700000028000000004A84000000000001000000000000000000000A61200000E63F486B2AA0D20100000000000000000200000028000000000000000000000000000008000000000000000000000000EA0E1600000000000100000001000000 "SIGN.MEDIA=14C84 Start.exe"=0x534143500100000000000000070000002800000000A600000000000001000000000000000000000661200000E63F486B2AA0D2010000000000000000020000002800000000000000000000000000000000000000000000000000000065E40000000000000100000001000000 "SIGN.MEDIA=618FB4 GOALauncher.exe"=0x5341435001000000000000000700000028000000CE8F61000000000001000000000000000000000671220000E63F486B2AA0D2010000000000000000020000002800000000000000800000000010004000000000000000000000000012DD0000000000000100000001000000 "C:\Program Files (x86)\Windows Media Player\wmplayer.exe"=0x5341435001000000000000000700000028000000008C0200FD5A030001000000010000000000000A61220000E63F486B2AA0D2010000000000000000 "SIGN.MEDIA=A16B20 AUTORUN.EXE"=0x5341435001000000000000000700000028000000009000000000000001000000000000000000010541200000E63F486B2AA0D20100000000000000000200000028000000000000008000000000000000000000000000000000000000357C0000000000000100000001000000 "SIGN.MEDIA=1E3AD2 autorun.exe"=0x534143500100000000000000070000002800000014D00B000000000001000000000000000000010571200000E63F486B2AA0D201000000000000000002000000280000000000000080000000000000000000000000000000000000002A8C0500000000000100000001000000 "SIGN.MEDIA=8C60 DXLAUNCH.EXE"=0x5341435001000000000000000700000028000000008A00000000000001000000000000000000010571200000E63F486B2AA0D201000000000000000002000000280000000000000080000000000000000000000000000000000000003F1A0000000000000100000001000000 "SIGN.MEDIA=B53C54 AUTORUN\AUTORUN.EXE"=0x5341435001000000000000000700000028000000004C01000000000001000000000000000000010571200000E63F486B2AA0D2010000000000000000020000002800000000000000800000100000000000000000000000000000000085680500000000000100000001000000 "C:\Program Files (x86)\NovaLogic\Delta Force Land Warrior\Update.exe"=0x5341435001000000000000000700000028000000008002000000000001000000000000000000010571200000E63F486B2AA0D2010000008000000000 "C:\Program Files (x86)\NovaLogic\Delta Force Land Warrior\DFLW.EXE"=0x534143500100000000000000070000002800000000A01D000000000001000000000000000000010571200000E63F486B2AA0D20100000000000000000200000050000000000000000080002000000000000000000000000000000000F04E0C00000000000100000001000000000000000000000000100040000000000000000000000000519B0100000000000100000000000000 "SIGN.MEDIA=7E53007E Autorun.exe"=0x5341435001000000000000000700000028000000009000000000000001000000000000000000010571200000E63F486B2AA0D201000000000000000002000000280000000000000080000000001000000000000000000000000000002E2F0000000000000100000001000000 "SIGN.MEDIA=4381DE MCDM.exe"=0x5341435001000000000000000700000028000000008006000000000001000000000000000000010541200000E63F486B2AA0D201000000000000000001000000040000000100000002000000500000000000000080000020000000000000000000000000000000000C560400000000000200000002000000000000000000000000001200000000000000100000000000B6280000000000000200000000000000 "C:\Program Files (x86)\NovaLogic\Delta Force Land Warrior\DFLWMEDC.EXE"=0x5341435001000000000000000700000028000000003E02000000000001000000000000000000010571200000E63F486B2AA0D20100000000000000000200000028000000000000000000000010100000000000000000000000000000CB560000000000000100000001000000 "SIGN.MEDIA=D8F9AE SETUP.EXE"=0x5341435001000000000000000700000028000000D03903000000000001000000000000000000010571200000E63F486B2AA0D2010000000000000000020000002800000000000000000800D00000000000000000000000000000000098210200000000000100000001000000 "C:\Program Files (x86)\Hexplore\hexplore.exe"=0x534143500100000000000000070000002800000000D00E000000000001000000000000000000010571200000E63F486B2AA0D20100000000000000000200000028000000000000000000001000000040000000000000000000000000DC620E00000000000100000001000000 "SIGN.MEDIA=2B1BEACF Launcher.exe"=0x534143500100000000000000070000002800000000E004000000000001000000000000000000010571200000E63F486B2AA0D201000000000000000002000000280000000000000080000000000000000000000000000000000000006AED1F01000000000100000001000000 "C:\Program Files (x86)\Ubi Soft\Monster Jam\Launcher.exe"=0x534143500100000000000000070000002800000000E004000000000001000000000000000000010571200000E63F486B2AA0D2010000000000000000020000002800000000000000800000000004000000000000000000000000000001680000000000000100000001000000 "C:\Program Files (x86)\Ubi Soft\Monster Jam\MTruck\ConfigUtil.exe"=0x534143500100000000000000070000002800000000B002000000000001000000000000000000010571200000E63F486B2AA0D20100000000000000000200000028000000000000000000000000000200000000000000000000000000692D0000000000000100000001000000 "C:\Program Files (x86)\Ubi Soft\Monster Jam\MTruck\MTRUCK.exe"=0x534143500100000000000000070000002800000000C012000000000001000000000000000000010571200000E63F486B2AA0D2010000000000000000020000002800000000000000000000000000000000000000000000000000000070900500000000000200000002000000 "SIGN.MEDIA=A2A373 AUTORUN\AUTORUN.EXE"=0x5341435001000000000000000700000028000000004C01000000000001000000000000000000010571200000E63F486B2AA0D20100000000000000000200000028000000000000008000000000000000000000000000000000000000CA1F0400000000000100000001000000 "C:\Program Files (x86)\NovaLogic\Comanche 4\c4.exe"=0x5341435001000000000000000700000028000000AE2228000000000001000000000000000000010561200000E63F486B2AA0D201000000000000000002000000280000000000000000000000000010400000000000001000000000004C6D0E00000000000100000001000000010000000400000001000000 "C:\Program Files (x86)\NovaLogic\Comanche 4\c4medc.exe"=0x534143500100000000000000070000002800000000600A000000000001000000000000000000010571200000E63F486B2AA0D201000000000000000002000000280000000000000000000000000000000000000000000000000000002B2D0000000000000100000001000000 "SIGN.MEDIA=15CECB13 AUTORUN.EXE"=0x53414350010000000000000007000000280000002FC815000000000001000000000000000000010551200000E63F486B2AA0D2010000000000000000020000002800000000000000800000100004000000000000000000000000000038300000000000000100000001000000 "SIGN.MEDIA=CD63D1 Go.exe"=0x534143500100000000000000070000002800000000F009000000000001000000000000000000010561200000E63F486B2AA0D20100000000000000000200000050000000000000000000000010000000000000000000000000000000927B080000000000010000000100000000000000800000000004000000000000000000000000000089C30100000000000100000000000000 "SIGN.MEDIA=CD63D1 LANCEMENT.exe"=0x5341435001000000000000000700000028000000006408000000000001000000000000000000010561200000E63F486B2AA0D20100000000000000000200000028000000000000000000000010040000000000000000000000000000D44A0000000000000100000001000000 "SIGN.MEDIA=66D86 Jeux\3dBombuzal\3dBombuzal.exe"=0x5341435001000000000000000700000028000000866D06000000000001000000000000000000010571200000E63F486B2AA0D20100000000000000000200000028000000000000000000000010040000000000000000000000000000870E0000000000000100000001000000 "C:\AMD\radeon-crimson-relive-17.9.1-minimalsetup-170907_64bit\Bin64\RadeonInstaller.exe"=0x5341435001000000000000000700000028000000885D3D00A3D83D0001000000000000000000000A00210000E78E163C2AA0D20100000000000000000200000028000000000000000000004000000000000000000000000000000000E2E00500000000000100000001000000 "C:\GOG Games\Starbound\win64\starbound.exe"=0x534143500100000000000000070000002800000000341A010000000001000000000000000000000A73220000DB80FDAC2839D301000000000000000002000000280000000000000010000020000000000000000000000000000000000C610000000000000200000002000000 "C:\Program Files (x86)\Twitch Launcher\TwitchLauncher.exe"=0x5341435001000000000000000700000028000000189601009CC1010001000000000000000000000A80210000E63F486B2AA0D20100000000000000000200000028000000000000008000000000000000000000000000000000000000ECB60000000000000100000001000000 "C:\AMD\radeon-crimson-relive-17.10.3-minimalsetup-171027_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088C1B4014AA5B50101000000000000000000000A00210000E78E163C2AA0D2010000000000000000 "C:\Users\Timothée\AppData\Roaming\YGOPro DevPro Launcher\DevPro.exe"=0x5341435001000000000000000700000028000000009013000000000001000000000000000000000AF1220000E63F486B2AA0D20100000000000000000200000028000000000000000000000000000000000000000000000000000000BD575400000000000300000003000000 "C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE"=0x5341435001000000000000000700000028000000D86406002358070001000000000000000000000A7122000067077CBAC54CD4010000000100000000 "C:\Program Files\Mozilla Firefox\pingsender.exe"=0x5341435001000000000000000700000028000000D0F700005D67010001000000000000000000000A73200000DB80FDAC2839D301000000000000000002000000280000000000000000000000000000000000000000000000000000000B060000000000000A0000000A000000 "C:\AMD\radeon-crimson-relive-17.11.1-minimalsetup-171109_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088C3B4012983B50101000000000000000000000A00210000E78E163C2AA0D2010000000000000000020000002800000000000000000000400000000000000000000000000000000002EF0700000000000100000001000000 "C:\AMD\radeon-software-adrenalin-17.12.1-minimalsetup-171211_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088A7B401872EB50101000000000000000000000A00210000E78E163C2AA0D2010000000000000000 "C:\RomStation\RomStation.exe"=0x5341435001000000000000000700000028000000007A1D000000000001000000000000000000000A71220000E63F486B2AA0D20100000000000000000200000028000000000000000000004000000000000000000000000000000000FDCF2200000000000100000001000000 "C:\Program Files\Dolphin2\Dolphin.exe"=0x53414350010000000000000006000000080000000000000200000000070000002800000000B0CD0018C8CD0001000000000000000000020673020000BFA2139DEDD1D301000000000000000002000000500000000000000000000000000000020000000000000000000000001F474E00000000001D0000001B0000000000000000040020000000020000000000000000000000002EDB0D00000000000100000000000000 "C:\Program Files (x86)\Garena\Garena\Garena.exe"=0x534143500100000000000000070000002800000040E106002AE2060001000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000B9970700000000000E0000000E000000 "SIGN.MEDIA=24010398 Setup.exe"=0x5341435001000000000000000700000028000000434815000000000001000000000000000000010600010000E63F486B2AA0D20100000000000000000200000028000000000000000000000000000000000000000000000000000000BB8C0100000000000100000001000000 "C:\Program Files (x86)\505 Games\Tiny Brains\Binaries\Win32\TinyBrains.exe"=0x53414350010000000000000007000000280000000090A2021DFAA202010000000000000000000206F1020000E63F486B2AA0D201000000000000000002000000280000000000000000000000000000000000000000000000000000009D480100000000000300000003000000 "C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE"=0x5341435001000000000000000700000028000000D8DA0901A3C80A0101000000000000000000000A7122000067077CBAC54CD4010000000100000000 "C:\Program Files (x86)\Origin\Origin.exe"=0x534143500100000000000000070000002800000048492F00816C2F0001000000000000000000000A00210000E63F486B2AA0D20100000000000000000200000028000000000000000000000000000000000000000000000000000000CA530400000000000100000001000000 "C:\Program Files (x86)\Origin\OriginClientService.exe"=0x534143500100000000000000070000002800000040E92000D731210001000000000000000000010600010000E63F486B2AA0D2010000000000000000050000001000000000000000000000000000000000000000020000002800000000000000000000000000000000000000000000000000000096010000000000000100000001000000 "C:\Program Files (x86)\Origin\OriginWebHelperService.exe"=0x5341435001000000000000000700000028000000482F2E00534D2E0001000000000000000000010600010000E63F486B2AA0D201000000000000000002000000280000000000000000000000000000000000000000000000000000004F270000000000000100000001000000 "C:\AMD\radeon-adrenalin-18.2.1-minimalsetup-180206_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088B3B4010191B50101000000000000000000000A00210000E78E163C2AA0D20100000000000000000200000028000000000000000000004000000000000000000000000000000000DA6E4B00000000000100000001000000 "C:\AMD\radeon-software-adrenalin-18.3.4-minimalsetup-180325_64bit\Bin64\RadeonInstaller.exe"=0x5341435001000000000000000700000028000000888BB401B3B4B40101000000000000000000000A00210000DB80FDAC2839D3010000000000000000 "C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe"=0x5341435001000000000000000700000028000000F0C80000F255010001000000000000000000000A00210000BFA2139DEDD1D301000000000000000005000000100000000000000000000000000000008000000002000000280000000000000080000040000000000000000000000000000000004B14A803000000008500000085000000 "C:\Users\Timothée\Desktop\jeux\Subterrain_v1.1.3.7\Subterrain.exe"=0x5341435001000000000000000700000028000000006801010000000001000000000000000000000A00210000DB80FDAC2839D3010000000000000000020000002800000000000000000000000000000000000000000000000000000052300100000000000100000001000000 "C:\Users\Timothée\Desktop\jeux\NoMariosSky\NoMariosSky.exe"=0x534143500100000000000000070000002800000000420E010000000001000000000000000000000A00210000DB80FDAC2839D3010000000000000000020000002800000000000000000000000000000000000000000000000000000011640500000000000100000001000000 "SIGN.MEDIA=4BE1BAF9 setup.exe"=0x5341435001000000000000000700000028000000F74C73000000000001000000000000000000010600010000DB80FDAC2839D3010000000000000000020000002800000000000000000000400000000000000000000000000000000047F00100000000000100000001000000 "C:\Program Files (x86)\Moonlighter\Moonlighter.exe"=0x534143500100000000000000070000002800000000EE09000000000001000000000000000000000A00210000DB80FDAC2839D301000000000000000002000000280000000000000020000060000000000000000000000000000000008EEF6000000000000D0000000D000000 "SIGN.MEDIA=844D4E1D setup.exe"=0x5341435001000000000000000700000028000000714524000000000001000000000000000000030600010000DB80FDAC2839D30100000000000000000200000028000000000000000000000000000200000000000000000000000000B1280100000000000100000001000000 "C:\Program Files (x86)\Microsoft Office\Office12\POWERPNT.EXE"=0x5341435001000000000000000700000028000000F01A080089E5080001000000000000000000000A7122000067077CBAC54CD4010000000100000000 "C:\AMD\radeon-adrenalin-18.5.1-minimalsetup-180522_64bit\Bin64\RadeonInstaller.exe"=0x5341435001000000000000000700000028000000882BBF017F22C00101000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000FC0E0500000000000200000002000000 "C:\Program Files\Common Files\LogiShrd\CDDRV3\LDConfig.exe"=0x5341435001000000000000000700000028000000888E0100918C020001000000000000000000000A7322000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000160C0000000000002004000020040000 "C:\Program Files\Common Files\LogiShrd\sp6\LU2\LULnchr.exe"=0x534143500100000000000000070000002800000018690500592006000100000000000000000002067122000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000006B510000000000003804000038040000 "C:\Users\Timothée\Desktop\jeux\Emulation\64bitvba-m\VisualBoyAdvance.exe"=0x534143500100000000000000070000002800000050D01A000000000001000000000000000000010571000000DB80FDAC2839D30100000000000000000200000028000000000000000000000000000000000000000000000000000000AE480400000000000100000001000000 "C:\Program Files (x86)\WinRAR\WinRAR.exe"=0x5341435001000000000000000700000028000000C8652100A673210001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000E81C0800000000005C0000005C000000 "C:\Users\Timothée\Desktop\sse\SmartSteamEmu\SmartSteamLoader_x64.exe"=0x5341435001000000000000000700000028000000002A04007CA4040001000000000000000000000A73220000DB80FDAC2839D30100000000000000000200000028000000000000000000000000000000000000000000000000000000FF140000000000000100000001000000 "C:\Users\Timothée\Desktop\sse\SSELauncher.exe"=0x5341435001000000000000000700000028000000008E03000000000001000000000000000000000A75220000DB80FDAC2839D3010000000000000000020000002800000000000000000000000000000000000000000000000000000050150600000000000300000003000000 "C:\Games\The Escapists 2\TheEscapists2.exe"=0x534143500100000000000000070000002800000070C717010000000001000000000000000000000A00210000DB80FDAC2839D301000000000000000002000000280000000000000000000000000000000000000000000000000000003A060000000000000200000002000000 "C:\Games\The Escapists 2\The Escapists 2.exe"=0x534143500100000000000000070000002800000000CA0A00FEDC0A0001000000000000000000000A71220000DB80FDAC2839D3010000000000000000020000002800000000000000000000000000000000000000000000000000000048932400000000000500000005000000 "C:\Games\The Escapists 2\extras\dxwebsetup.exe"=0x5341435001000000000000000700000028000000587504004CBE040001000000000000000000010571000000DB80FDAC2839D30100000000000000000200000028000000000000000008004000000000000000000000000000000000F7030000000000000100000001000000 "C:\GOG Games\Dead Cells\deadcells.exe"=0x534143500100000000000000070000002800000018168100A97A810001000000000000000000000A71220000DB80FDAC2839D3010000000000000000020000002800000000000000100000200000000000000000000000000000000021998E00000000000700000007000000 "C:\Users\Timothée\AppData\Roaming\Twitch\Bin\Twitch.exe"=0x534143500100000000000000070000002800000040EB17003756180001000000000000000000000A71220000DB80FDAC2839D301000000000000000002000000280000000000000000000000000000000000000000000000000000004698EA00000000000100000001000000 "C:\AMD\radeon-software-adrenalin-18.8.2-minimalsetup-180827_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088F7C001EA8AC10101000000000000000000000A00210000BFA2139DEDD1D301000000000000000002000000280000000000000000000040000000000000000000000000000000006B140800000000000100000001000000 "C:\Program Files\Windows Media Player\wmplayer.exe"=0x5341435001000000000000000700000028000000009802002C08030001000000010000000000000A63220000BFA2139DEDD1D3010000000000000000 "C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe"=0x5341435001000000000000000700000028000000F0C80000DD5A010001000000000000000000000A00210000BFA2139DEDD1D3010000000000000000050000001000000000000000000000000000000080000000020000002800000000000000800000000000000000000000000000000000000023300100000000000100000001000000 "SIGN.MEDIA=83D4A4FE setup.exe"=0x5341435001000000000000000700000028000000684D73000000000001000000000000000000010600010000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000B4250100000000000100000001000000 "C:\Program Files (x86)\Distance\Distance.exe"=0x5341435001000000000000000700000028000000006E13010000000001000000000000000000000A00210000BFA2139DEDD1D301000000000000000002000000280000000000000020000060000000000000000000000000000000005BDE5C00000000000200000002000000 "C:\Program Files\CCleaner\CCleaner64.exe"=0x5341435001000000000000000700000028000000A8451C01C00D1D0101000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000002060000002000000000000000000000000000000000A6010000000000000100000001000000 "C:\AMD\radeon-software-adrenalin-18.9.3-minimalsetup-181005_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088B9B6012A60B70101000000000000000000000A00210000BFA2139DEDD1D3010000000000000000020000002800000000000000000000400000000000000000000000000000000050C31700000000000100000001000000 "C:\Program Files (x86)\KC Softwares\SUMo\SUMo.exe"=0x5341435001000000000000000700000028000000C09A1F0048BE1F0001000000000000000000000A61200000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000291E2101000000000400000004000000 "C:\Program Files (x86)\7-Zip\7zFM.exe"=0x5341435001000000000000000700000028000000007006000000000001000000000000000000010671200000BFA2139DEDD1D301000000000000000002000000280000000000000000000000000000000000000000000000000000009B920000000000000100000001000000 "C:\Program Files\7-Zip\7zFM.exe"=0x5341435001000000000000000700000028000000002C0D000000000001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000BBC90600000000001700000017000000 "C:\ProgramData\Ableton\Live 10 Suite\Program\Ableton Live 10 Suite.exe"=0x5341435001000000000000000700000028000000007620050000000001000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000AC290400000000000100000001000000 "C:\Program Files\DriversCloud.com\DriversCloud.exe"=0x5341435001000000000000000700000028000000B8A86900F1686A0001000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000FF770000000000000200000002000000 "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe"=0x5341435001000000000000000700000028000000D8991000587A110001000000000000000000030675220000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000A2C50000000000000100000001000000 "SIGN.MEDIA=962EEF92 setup.exe"=0x5341435001000000000000000700000028000000271540000000000001000000000000000000010600010000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000D4C81900000000000100000001000000 "C:\Riot Games\Hextech Repair Tool\Hextech Repair Tool.exe"=0x5341435001000000000000000700000028000000000680009B01810001000000000000000000000A00210000BFA2139DEDD1D301000000000000000002000000280000000000000000000040000000000000000000000000000000005B0C2600000000000100000001000000 "SIGN.MEDIA=827998D1 setup.exe"=0x5341435001000000000000000700000028000000674205000000000001000000000000000000000A00210000BFA2139DEDD1D3010000000000000000020000002800000000000000000000000000000000000000000000000000000082190700000000000100000001000000 "C:\Program Files (x86)\Tales of Berseria\Tales of Berseria.exe"=0x534143500100000000000000070000002800000000C2D8040000000001000000000000000000000A73220000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000DBAD0901000000002000000020000000 "C:\Program Files\vJoy\x64\vJoyList.exe"=0x5341435001000000000000000700000028000000006801000000000001000000000000000000000A7322000067077CBAC54CD4010000000000000000020000002800000000000000000000000000000000000000000000000000000070170000000000000500000005000000 "C:\Program Files\vJoy\x64\vJoyConf.exe"=0x5341435001000000000000000700000028000000002804000000000001000000000000000000000A7322000067077CBAC54CD40100000000000000000200000028000000000000000000004000000000000000000000000000000000854A5708000000001200000012000000 "C:\Program Files\vJoy\x64\JoyMonitor.exe"=0x5341435001000000000000000700000028000000B0C30600C9F5060001000000000000000000000A73220000BFA2139DEDD1D301000000000000000002000000280000000000000000000000000000000000000000000000000000006C080000000000000100000001000000 "C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe"=0x5341435001000000000000000500000010000000000000000000000000000000000000000700000028000000988EE900EAB6E90001000000000000000000000A7322000067077CBAC54CD40100000000000000000200000028000000000000000000004000000000000000000000000000000000A8789800000000000500000005000000 "C:\AMD\radeon-software-adrenalin-18.12.1-minimalsetup-181129_64bit\Bin64\RadeonInstaller.exe"=0x534143500100000000000000070000002800000088D5F201B4E2F20101000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000A5130700000000000100000001000000 "C:\Program Files (x86)\Wizards of the Coast\MTGA\MtgaLauncher.exe"=0x5341435001000000000000000700000028000000001E0100F576010001000000000000000000000A75220000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000B84D4400000000000100000001000000 "SIGN.MEDIA=60C9D8D4 setup.exe"=0x5341435001000000000000000700000028000000ADEE9B0C0000000001000000000000000000030600010000BFA2139DEDD1D301000000000000000002000000280000000000000000000000000002000000000000000000000000000C910200000000000100000001000000 "C:\Program Files (x86)\Call of Duty Deluxe Edition\CoDSP.exe"=0x534143500100000000000000070000002800000000301A000000000001000000000000000000010571200000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000040000000000000000000000000000797A6E00000000000C0000000C000000 "C:\Program Files (x86)\Call of Duty Deluxe Edition\CoDUOSP.exe"=0x534143500100000000000000070000002800000000901B000000000001000000000000000000010571200000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000040000000000000000000000000000A13E5F00000000000800000008000000 "C:\AMD\radeon-software-adrenalin-2019-edition-18.12.2-minimalsetup-181212_64bit\Bin64\RadeonInstaller.exe"=0x53414350010000000000000007000000280000008833F301589DF30101000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000F7AD1300000000000100000001000000 "C:\Users\Timothée\Desktop\mb_driver_audio_realtek_pg466\HD_Audio\Setup.exe"=0x5341435001000000000000000700000028000000605F12009EA9120001000000000000000000030600010000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000C1F40000000000000100000001000000 "C:\Program Files (x86)\Mr DJ\Call of Duty 2\CoD2SP_s.exe"=0x534143500100000000000000070000002800000000E01A000000000001000000000000000000000A61200000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000C1FA2D00000000000300000003000000 "C:\Program Files\FileZilla FTP Client\filezilla.exe"=0x5341435001000000000000000700000028000000A80A9F00DAFF9F0001000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000F9341400000000000100000001000000 "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe"=0x534143500100000000000000070000002800000018585700E37C570001000000000000000000000671000000BFA2139DEDD1D3010000000000000000020000002800000000000000000000000000000000000000000000000000000066D70300000000000200000002000000 "C:\ProgramData\Twitch\Games\Uninstaller\TwitchGameRemover.exe"=0x534143500100000000000000070000002800000040214000E332400001000000000000000000000A00210000BFA2139DEDD1D301000000000000000002000000280000000000000000000040000000000000000000000000000000005B730000000000000100000001000000 "SIGN.MEDIA=A61FAC56 setup.exe"=0x5341435001000000000000000700000028000000E02652000000000001000000000000000000010600010000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000E8921400000000000100000001000000 "C:\Users\Timothée\Desktop\x360ce_x64.exe"=0x5341435001000000000000000700000028000000A80031004891310001000000000000000000000A7322000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000009B799600000000000200000002000000 "C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe"=0x534143500100000000000000070000002800000020E10100347F020001000000000000000000030600010000BFA2139DEDD1D30100000000000000000200000028000000000000000000009000020000000000000000000000000000112C0000000000000200000002000000 "C:\Users\Timothée\Desktop\Logiciel\Tor Browser\Browser\firefox.exe"=0x53414350010000000000000007000000280000000002150043C9150001000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000019C0A00000000000300000003000000 "C:\Users\Timothée\AppData\Local\Plays-ltc\0.50.8\ltc_helper32-28171-462968d.exe"=0x5341435001000000000000000700000028000000888C0600C5BD060001000000000000000000000A71220000BFA2139DEDD1D301000000000000000005000000100000000000000000000000000000000000000002000000280000000000000000000040000000000000000000000000000000001E651201000000000200000002000000 "C:\GOG Games\The Curious Expedition\The Curious Expedition.exe"=0x534143500100000000000000070000002800000000C01F030000000001000000000000000000000A00210000BFA2139DEDD1D3010000000000000000020000002800000000000000100000200000000000000000000000000000000043931B00000000000100000001000000 "C:\Users\Timothée\Desktop\igg\Stardew.Valley.v1.3.35\LAUNCHER.exe"=0x5341435001000000000000000700000028000000008C03001880040001000000000000000000000A71220000BFA2139DEDD1D3010000000000000000020000002800000000000000800000000000000000000000000000000000000085460200000000000200000002000000 "C:\Users\Timothée\Desktop\igg\Stardew.Valley.v1.3.35\Stardew Valley.exe"=0x534143500100000000000000070000002800000000D62A003E472B0001000000000000000000000A71200000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000950FAA00000000000B0000000B000000 "C:\Program Files\CCleaner\CCleaner.exe"=0x5341435001000000000000000700000028000000C054DF001C87DF0001000000000000000000000A00210000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000EA000000000000000100000001000000 "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe"=0x5341435001000000000000000700000028000000C8B00E006A730F000100000000000000000000060001000067077CBAC54CD4010000000000000000020000002800000000000000000000000000000000000000000000000000000074B6FD01000000002800000028000000 "SIGN.MEDIA=F8AD27 Setup.exe"=0x53414350010000000000000007000000280000001C2C3E000000000001000000000000000000010571000000BFA2139DEDD1D301000000000000000002000000280000000000000000080040000000000000000000000000000000009E8BB000000000000100000001000000 "C:\Program Files (x86)\SPEEDLINK\DECUS Gaming Mouse\Monitor.EXE"=0x534143500100000000000000070000002800000000BE36000000000001000000000000000000030671220000BFA2139DEDD1D301000000000000000002000000280000000000000000000000000000000000000000000000000000003F000000000000000100000001000000 "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CLI.exe"=0x5341435001000000000000000700000028000000C8DE0400AAB1050001000000000000000000010500100000BFA2139DEDD1D3010000000000000000020000002800000000000000000000000000000000000000000000000000000034770000000000000100000001000000 "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe"=0x5341435001000000000000000700000028000000C8B2040048A9050001000000000000000000000A00210000BFA2139DEDD1D3010000000000000000 "C:\Program Files\Logitech\SetPointP\SetPoint.exe"=0x534143500100000000000000070000002800000088B22F008EEC2F0001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000C3040000000000000300000003000000 "C:\Users\Timothée\AppData\Local\Discord\Update.exe"=0x5341435001000000000000000700000028000000583F1700E87E170001000000000000000000000A7522000067077CBAC54CD4010000000000000000020000002800000000000000000000000400000000000000000000000000000020CEA903000000006C0000006C000000 "SIGN.MEDIA=84BD80E8 Setup.exe"=0x53414350010000000000000007000000280000009B0F11000000000001000000000000000000010600010000BFA2139DEDD1D301000000000000000002000000280000000000000000000000000002000000000000000000000000006DCD0100000000000100000001000000 "C:\Program Files (x86)\WB Games\Scribblenauts Unlimited\Scribble.exe"=0x534143500100000000000000070000002800000000E24D0088394E0001000000000000000000010671020000BFA2139DEDD1D30100000000000000000200000050000000000001060000006000000000000000000000000000000000E0DA000000000000020000000200000000000000000000001000000000000000000000000000000038230000000000000200000000000000 "C:\Program Files (x86)\WB Games\Scribblenauts Unlimited\DirectXRedist\DXSETUP.exe"=0x53414350010000000000000007000000280000005833080061B8080001000000000000000000010671020000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000564D0300000000000100000001000000 "C:\Program Files (x86)\WB Games\Scribblenauts Unlimited\Launcher.exe"=0x5341435001000000000000000700000028000000001204004A63010001000000000000000000010671020000BFA2139DEDD1D30100000000000000000500000010000000000000000000000000000000800000000200000050000000000000008000004000000000000000000000000000000000A8831A0000000000010000000100000000000000800000000000000000000000000000000000000031170000000000000100000000000000 "C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.1903.1152.0_x64__8wekyb3d8bbwe\LocalBridge.exe"=0x534143500100000000000000070000002800000048B600006317010001000000000000000000000A73220000BFA2139DEDD1D30100000000000000000200000028000000000000000000000000000000000000000000000000000000E4350000000000000200000002000000 "C:\Program Files\Logitech Gaming Software\LCore.exe"=0x534143500100000000000000070000002800000088C01D010E531E0101000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000F573B41A000000004000000040000000 "C:\Program Files\windows nt\accessories\wordpad.exe"=0x5341435001000000000000000700000028000000006A4500F2B5450001000000010000000000000A6322000067077CBAC54CD4010000000000000000 "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"=0x5341435001000000000000000700000028000000B82009009C46090001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000641BE101000000000100000001000000 "C:\Program Files\CPUID\CPU-Z\cpuz.exe"=0x5341435001000000000000000700000028000000E0453900BD52390001000000000000000000000A0021000067077CBAC54CD401000000000000000002000000280000000000000000000040000000000000000000000000000000008D430100000000000100000001000000 "C:\Users\Timothée\Desktop\CPUThermometer\CPUThermometer.exe"=0x5341435001000000000000000700000028000000006407000000000001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000004000000000000000000000000000000000A9BADC01000000000200000002000000 "C:\Program Files\PowerISO\PowerISO.exe"=0x5341435001000000000000000700000028000000E06F490078294A0001000000000000000000000A7320000067077CBAC54CD40100000000000000000200000028000000000000000000000000000010000000000000000000000000AC700000000000000200000002000000 "C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe"=0x534143500100000000000000070000002800000090A330000E1D310001000000000000000000000A7122000067077CBAC54CD40100000000000000000200000028000000000000008000000000000000000000000000000000000000F93E3403000000000300000003000000 "C:\Users\Timothée\AppData\Local\Blitz\Update.exe"=0x5341435001000000000000000700000028000000A01D1C0008221C0001000000000000000000000A0021000067077CBAC54CD40100000000000000000500000010000000000000000000000000000000000000000200000028000000000000000000004000000000000000000000000000000000DB0D0000000000000100000001000000 "C:\Program Files (x86)\PDFArea\Image to PDF Converter Free\Image2PDF.exe"=0x5341435001000000000000000700000028000000123741000000000001000000000000000000000A7122000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000DD2B0100000000000100000001000000 "C:\Program Files (x86)\Steam\SteamApps\common\Starbound\win64\starbound_server.exe"=0x53414350010000000000000007000000280000000058DF000000000001000000000000000000000A7322000067077CBAC54CD40100000000000000000200000050000000000000000000004000000000000000000000000000000000CC14040000000000030000000300000000000000000000000000000000000000000000000000000019E10000000000000200000000000000 "SIGN.MEDIA=C2582BC5 setup.exe"=0x5341435001000000000000000700000028000000554D7300000000000100000000000000000001060001000067077CBAC54CD40100000000000000000200000028000000000000000000004000000000000000000000000000000000DDD10200000000000100000001000000 "C:\Program Files (x86)\Starbound Bounty Hunter\win64\starbound.exe"=0x5341435001000000000000000700000028000000008A1A010000000001000000000000000000000A7322000067077CBAC54CD4010000000000000000050000001000000000000000000000000000000000000000020000005000000000000000000000400000000000000000000000000000000023510C00000000000400000004000000000000000000000000000000000000000000000000000000B9100000000000000100000000000000 "C:\Program Files (x86)\Starbound Bounty Hunter\win64\starbound_server.exe"=0x5341435001000000000000000700000028000000002ADF000000000001000000000000000000000A7322000067077CBAC54CD40100000000000000000500000010000000000000000000000000000000000000000200000028000000000000000000004000000000000000000000000000000000BE7D7900000000000200000002000000 "C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe"=0x534143500100000000000000070000002800000080D74F0235A7500201000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000008000000000000000000000000000000000000000208C1100000000000100000001000000 "C:\Users\Timothée\Desktop\emul nes\higan.exe"=0x534143500100000000000000070000002800000000D44F002B48500001000000000000000000000A6320000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000002BCE1E00000000000200000002000000 "C:\Program Files\4KDownload\4kvideodownloader\4kvideodownloader.exe"=0x53414350010000000000000007000000280000008865790176FB790101000000000000000000000A7322000067077CBAC54CD4010000000000000000020000002800000000000000000000000000000000000000000000000000000022951900000000000200000002000000 "C:\Program Files (x86)\obs-studio\bin\64bit\obs64.exe"=0x534143500100000000000000070000002800000010A83100D469320001000000000000000000000A7322000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000003D1F5300000000000200000002000000 "C:\SiMPLEX.Release.Name\Heroes of Hammerwatch Witch Hunter\HWR.exe"=0x5341435001000000000000000700000028000000005442000000000001000000000000000000000A7122000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000A6BF0000000000000100000001000000 "C:\Users\Timothée\Desktop\coop\Thea.2.The.Shattering.Build.0519\Thea2.exe"=0x534143500100000000000000070000002800000000E609000000000001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000FFBA1800000000000100000001000000 "C:\Users\Timothée\Desktop\coop\Village.Feud\Village Feud\Poly map.exe"=0x534143500100000000000000070000002800000000EE09000000000001000000000000000000000A0021000067077CBAC54CD4010000000000000000020000002800000000000000000000000000000000000000000000000000000081341D00000000000200000002000000 "C:\Program Files (x86)\WinDirStat\windirstat.exe"=0x534143500100000000000000070000002800000000F00900000000000100000000000000000001057120000067077CBAC54CD40100000000000000000200000028000000000000000000000008040000000000000000000000000000C0B66C00000000000100000001000000 "C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe"=0x5341435001000000000000000700000028000000582F07001310080001000000000000000000000A7122000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000008F4E3B00000000000200000002000000 "SIGN.MEDIA=2311E7E6 setup.exe"=0x5341435001000000000000000700000028000000FC104000000000000100000000000000000001060001000067077CBAC54CD40100000000000000000200000028000000000000000000004000000000000000000000000000000000C2194500000000000100000001000000 "C:\Users\Timothée\AppData\Roaming\uTorrent\uTorrent.exe"=0x5341435001000000000000000700000028000000F0BE1B00599F1C0001000000000000000000000A0021000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000009CB38B00000000000200000002000000 "C:\Program Files (x86)\DiRT Rally 2 0\dirtrally2.exe"=0x534143500100000000000000070000002800000000AC4E010000000001000000000000000000000A0021000067077CBAC54CD40100000000000000000500000010000000000000000000000000000000200000000200000028000000000000002000006000000000000000000000000000000000BA7E3700000000000400000004000000 "C:\Program Files\Java\jdk-11.0.1\bin\javaw.exe"=0x5341435001000000000000000700000028000000684304002D0C050001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000AC8CCA01000000000200000002000000 "C:\Users\Timothée\Desktop\ineid\powder-94.1-win32\Powder.exe"=0x534143500100000000000000070000002800000000884D000000000001000000000000000000000A7120000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000008A7C6B00000000000100000001000000 "C:\Users\Timothée\Desktop\coop\Deep.Rock.Galactic.Update.25.05.2019\Deep Rock Galactic\FSD.exe"=0x534143500100000000000000070000002800000000EA0700BF07030001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000179B0000000000000200000002000000 "C:\Users\Timothée\Desktop\coop\Risk.of.Rain.2.v26.06.2019\Risk of Rain 2.exe"=0x534143500100000000000000070000002800000000EE09000000000001000000000000000000000A0021000067077CBAC54CD4010000000000000000020000002800000000000000000000000000000000000000000000000000000026A30000000000000100000001000000 "C:\Users\Timothée\Desktop\coop\Deep.Rock.Galactic.Update.25.05.2019\Deep Rock Galactic\FSD\Binaries\Win64\FSD-Win64-Shipping.exe"=0x5341435001000000000000000700000028000000005A98031660980301000000000000000000000A0021000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000002B610000000000000100000001000000 "C:\Program Files\internet explorer\iexplore.exe"=0x5341435001000000000000000700000028000000987C0C00697D0C0001000000010000000000000A0021000067077CBAC54CD4010000000000000000 "C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssvagent.exe"=0x5341435001000000000000000700000028000000F0DD0000AEB501000100000000000000000001060001000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000FF070000000000000100000001000000 "C:\Users\Timothée\Desktop\coop\Deep.Rock.Galactic.Update.25.05.2019\Deep Rock Galactic\SmartSteamLoader.exe"=0x5341435001000000000000000700000028000000008C0300CDD6030001000000000000000000000A7122000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000008C78CD02000000000A0000000A000000 "C:\Users\Timothée\Desktop\coop\Deep.Rock.Galactic.Update.25.05.2019\Deep Rock Galactic\SmartSteamLoader_x64.exe"=0x5341435001000000000000000700000028000000002A04007CA4040001000000000000000000000A7322000067077CBAC54CD4010000000000000000020000002800000000000000000000000000000000000000000000000000000038271D02000000000200000002000000 "C:\Users\Timothée\Desktop\igg\UnderMine\UnderMine.exe"=0x534143500100000000000000070000002800000000EE09000000000001000000000000000000000A0021000067077CBAC54CD4010000000000000000020000002800000000000000000000000000000000000000000000000000000049151800000000000100000001000000 "C:\Users\Timothée\Desktop\coop\Black.Ice.v0.8.158\Black Ice.exe"=0x534143500100000000000000070000002800000000C209000000000001000000000000000000000A0021000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000003EB24400000000000100000001000000 "C:\Program Files\Mozilla Firefox\firefox.exe"=0x534143500100000000000000070000002800000020CA08003FCF080001000000000000000000000A0021000067077CBAC54CD4010000000100000000 "C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe"=0x5341435001000000000000000700000028000000A05E03005CC5030001000000000000000000000A0021000067077CBAC54CD4010000000000000000 "C:\Program Files (x86)\Diablo III\Diablo III Launcher.exe"=0x5341435001000000000000000700000028000000E8414A00ACBB4A0001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000008000000000000000000000000000000000000000D0B68A01000000000400000004000000 "C:\Users\Timothée\Desktop\coop\Duck.Game.v30.08.2017\DuckGame.exe"=0x5341435001000000000000000700000028000000006024000000000001000000000000000000000A7122000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000006C240100000000000200000002000000 "C:\Users\Timothée\AppData\Local\Microsoft\OneDrive\19.152.0801.0008\FileSyncConfig.exe"=0x534143500100000000000000070000002800000078940500FFAD050001000000000000000000000A0021000067077CBAC54CD4010000000100000000 "C:\Users\Timothée\Desktop\parsec-windows.exe"=0x53414350010000000000000007000000280000004015C90333E5C90301000000000000000000000A0021000067077CBAC54CD401000000000000000002000000280000000000000000000040000000000000000000000000000000004A2D0000000000000100000001000000 "C:\Program Files\Parsec\parsecd.exe"=0x534143500100000000000000070000002800000048060600ABF7060001000000000000000000000A7322000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000CB000000000000000100000001000000 "C:\Users\Timothée\Desktop\MyIPSuite.exe"=0x53414350010000000000000007000000280000001A9415000000000001000000000000000000000A4120000067077CBAC54CD401000000000000000002000000280000000000000000080040000000000000000000000000000000009EFF0000000000000100000001000000 "C:\Program Files (x86)\My IP Suite\MyIPSuite.exe"=0x534143500100000000000000070000002800000000301600B31717000100000000000000000001056120000067077CBAC54CD401000000000000000002000000280000000000000000000010001000000000000000000000000000007F524D00000000000100000001000000 "C:\Users\Timothée\Desktop\DriversCloud\DriversCloud.exe"=0x534143500100000000000000070000002800000098F56800CF18690001000000000000000000000A0021000067077CBAC54CD40100000000000000000500000010000000000000000000000000000000000000000200000028000000000000000000004000000000000000000000000000000000747C0000000000000100000001000000 "SIGN.MEDIA=83037810 setup.exe"=0x5341435001000000000000000700000028000000FA104000000000000100000000000000000001060001000067077CBAC54CD4010000000000000000020000002800000000000000000000400000000000000000000000000000000039A50A00000000000100000001000000 "C:\Program Files (x86)\Hot Lava\archive\build\hotlava.exe"=0x534143500100000000000000070000002800000000EE09000000000001000000000000000000000A0021000067077CBAC54CD401000000000000000002000000280000000000000020000060000000000000000000000000000000004E631700000000000100000001000000 "C:\ProgramData\Malwarebytes\MBAMService\instlrupdate\mb3-setup-consumer-3.8.3.2965-1.0.613-1.0.11270.exe"=0x5341435001000000000000000700000028000000E8A7D5039381D60301000000000000000000000A0021000067077CBAC54CD401000000000000000002000000280000000000000000000040000000000000000000000000000000005B950000000000000100000001000000 "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"=0x5341435001000000000000000700000028000000F0DB190003681A0001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000DF31FB02000000000F0000000F000000 "C:\Users\Timothée\Desktop\igg\Noita\Noita\noita.exe"=0x534143500100000000000000070000002800000000D435010000000001000000000000000000000A7122000067077CBAC54CD401000000000000000002000000280000000000000000000000000000000000000000000000000000002D220A00000000000100000001000000 "C:\Riot Games\League of Legends\LeagueClient.exe"=0x534143500100000000000000070000002800000068C45000B558510001000000000000000000000A7122000067077CBAC54CD4010000000000000000020000002800000000000000000000000000000000000000000000000000000000542401000000001600000016000000 "C:\Users\Timothée\Desktop\sécurité\adwcleaner-7-4.exe"=0x5341435001000000000000000700000028000000C854740054F0740001000000000000000000000A0021000067077CBAC54CD4010000000000000000050000001000000000000000000000000000000000000000020000002800000000000000000000400000000000000000000000000000000045C50300000000000500000005000000 "C:\Program Files (x86)\Steam\Steam.exe"=0x534143500100000000000000070000002800000020FF3000094F310001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000000000000000000000000000000000000000CCDD6E02000000000200000002000000 "C:\Users\Timothée\Desktop\AdsFix.exe"=0x5341435001000000000000000700000028000000980B5E00B8EB5E0001000000000000000000000A0021000067077CBAC54CD40100000000000000000200000028000000000000000000004000000000000000000000000000000000CB1A0000000000000100000001000000 "C:\Users\Timothée\Desktop\AdsFix (1).exe"=0x5341435001000000000000000700000028000000980D5E0091FB5E0001000000000000000000000A0021000067077CBAC54CD4010000000000000000020000002800000000000000000000400000000000000000000000000000000045D4EA00000000000200000002000000 "C:\Users\Timothée\Desktop\sécurité\QuickDiag.exe"=0x5341435001000000000000000700000028000000980B4F00191D4F0001000000000000000000000A0021000067077CBAC54CD401000000000000000002000000280000000000000000000040000000000000000000000000000000003F9E1800000000000100000001000000 [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted] "C:\Program Files (x86)\Opera\Launcher.exe"=32 ---------- | IFEO ---------- | Mountpoints2 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Mountpoints2\E] : "E:\setup.exe" (AutoRun) ---------- | Windows [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini\Windows] ""=USR:Software\Microsoft\Windows NT\CurrentVersion\Windows "APPINIT_DLLS"=SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "Beep"=#USR:Control Panel\Sound "CoolSwitch"=USR:Control Panel\Desktop "DEFAULTSEPARATEVDM"=\\REGISTRY\\MACHINE\\SYSTEM\\CURRENTCONTROLSET\\CONTROL\\WOW "DEVICENOTSELECTEDTIMEOUT"=#SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "DoubleClickHeight"=#USR:Control Panel\Mouse "DoubleClickSpeed"=#USR:Control Panel\Mouse "DoubleClickWidth"=#USR:Control Panel\Mouse "DragFullWindows"=USR:Control Panel\Desktop "InitialKeyboardIndicators"=USR:Control Panel\Keyboard "LowPowerActive"=#USR:Control Panel\Desktop "LowPowerTimeOut"=#USR:Control Panel\Desktop "MouseSpeed"=#USR:Control Panel\Mouse "MouseThreshold1"=#USR:Control Panel\Mouse "MouseThreshold2"=#USR:Control Panel\Mouse "PowerOffActive"=#USR:Control Panel\Desktop "PowerOffTimeOut"=#USR:Control Panel\Desktop "ScreenSaveActive"=#USR:Control Panel\Desktop "ScreenSaveTimeOut"=#USR:Control Panel\Desktop "SnapToDefaultButton"=#USR:Control Panel\Mouse "Spooler"=#SYS:Microsoft\Windows NT\CurrentVersion\Windows "SWAPDISK"=SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "SwapMouseButtons"=#USR:Control Panel\Mouse "TRANSMISSIONRETRYTIMEOUT"=#SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\Boot] ""=SYS:Microsoft\Windows NT\CurrentVersion\WOW\boot "ScreenSaverActive"=USR:Control Panel\Desktop "ScreenSaverIsSecure"=USR:Control Panel\Desktop "SCRNSAVE.EXE"=USR:Control Panel\Desktop "Shell"=SYS:Microsoft\Windows NT\CurrentVersion\Winlogon [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini\Windows] "APPINIT_DLLS"=SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "Beep"=#USR:Control Panel\Sound "CoolSwitch"=USR:Control Panel\Desktop "DEFAULTSEPARATEVDM"=\\REGISTRY\\MACHINE\\SYSTEM\\CURRENTCONTROLSET\\CONTROL\\WOW "DEVICENOTSELECTEDTIMEOUT"=#SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "DoubleClickHeight"=#USR:Control Panel\Mouse "DoubleClickSpeed"=#USR:Control Panel\Mouse "DoubleClickWidth"=#USR:Control Panel\Mouse "DragFullWindows"=USR:Control Panel\Desktop "InitialKeyboardIndicators"=USR:Control Panel\Keyboard "LowPowerActive"=#USR:Control Panel\Desktop "LowPowerTimeOut"=#USR:Control Panel\Desktop "MouseSpeed"=#USR:Control Panel\Mouse "MouseThreshold1"=#USR:Control Panel\Mouse "MouseThreshold2"=#USR:Control Panel\Mouse "PowerOffActive"=#USR:Control Panel\Desktop "PowerOffTimeOut"=#USR:Control Panel\Desktop "ScreenSaveActive"=#USR:Control Panel\Desktop "ScreenSaveTimeOut"=#USR:Control Panel\Desktop "SnapToDefaultButton"=#USR:Control Panel\Mouse "SWAPDISK"=SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS "SwapMouseButtons"=#USR:Control Panel\Mouse "TRANSMISSIONRETRYTIMEOUT"=#SYS:MICROSOFT\\WINDOWS NT\\CURRENTVERSION\\WINDOWS [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\Boot] ""=SYS:Microsoft\Windows NT\CurrentVersion\WOW\boot "ScreenSaverActive"=USR:Control Panel\Desktop "ScreenSaverIsSecure"=USR:Control Panel\Desktop "SCRNSAVE.EXE"=USR:Control Panel\Desktop "Shell"=SYS:Microsoft\Windows NT\CurrentVersion\Winlogon [HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems] "windows"=%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 ---------- | Security center [HKLM\SOFTWARE\Microsoft\Security Center] "cval"=1 [HKLM\SOFTWARE\Microsoft\Security Center\svc] "VistaSp1"=131998227492991143 [HKLM\SOFTWARE\Microsoft\Windows Defender] "ProductAppDataPath"=C:\ProgramData\Microsoft\Windows Defender "ProductIcon"=@%ProgramFiles%\Windows Defender\EppManifest.dll,-100 "ProductLocalizedName"=@%ProgramFiles%\Windows Defender\EppManifest.dll,-1000 "DisableAntiSpyware"=0 "RemediationExe"=%ProgramFiles%\Windows Defender\MSASCui.exe "ProductType"=2 "ManagedDefenderProductType"=0 "ProductStatus"=0 "InstallTime"=0xFBE9EF1BC3EDCF01 "OOBEInstallTime"=0xA06B79AFB0F3D401 "InstallLocation"=C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\ "DisableAntiVirus"=0 "BackupLocation"=C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1908.7-0 "LastEnabledTime"=0x1BB7AA76497CD501 [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall"=1 [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall"=1 [HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall"=1 ---------- | Safeboot [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SystemEventsBroker] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vga.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vgasave.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AFD] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppInfo] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppMgmt] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioEndpointBuilder] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioSrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Base] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BasicDisplay.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BasicRender.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BFE] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Boot Bus Extender] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Boot file system] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\bowser] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BrokerInfrastructure] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Browser] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CryptSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DcomLaunch] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DeviceInstall] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dfsc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Dhcp] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\DnsCache] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Dot3Svc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dxgkrnl.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Eaphost] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\EFS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\EventLog] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\File system] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Filter] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\FsDepends.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudAddService.Sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudBus.Sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HelpSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\IKEEXT] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ipnat.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\KeyIso] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LanmanServer] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LanmanWorkstation] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LmHosts] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LSM] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Messenger] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MPSDrv] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MPSSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mrxsmb] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mrxsmb10] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mrxsmb20] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NativeWifiP] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NDIS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NDIS Wrapper] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ndiscap] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ndisuio] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBIOS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBIOSGroup] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetBT] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetDDEGroup] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Netlogon] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetMan] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\netprofm] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetSetupSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Network] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetworkProvider] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NlaSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Nsi] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\nsiproxy.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NTDS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PCI Configuration] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PlugPlay] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP Filter] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PNP_TDI] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PolicyAgent] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Power] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Primary disk] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ProfSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\rdbss] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\rdpencdd.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\rdsessmgr] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\RpcEptMapper] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\RpcSs] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sacsvr] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SCardSvr] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SCSI Class] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SerCx2.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\sermouse.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SharedAccess] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SmartcardSimulator] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SpbCx.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Streams Drivers] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SWPRV] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\System Bus Extender] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SystemEventsBroker] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TabletInputService] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TBS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Tcpip] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TDI] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TrustedInstaller] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\uefi.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\usbaudio.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VaultSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VDS] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vga.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vgasave.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VirtualSmartcardReader] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vmms] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\volmgr.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\volmgrx.sys] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wcmsvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WinDefend] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WinMgmt] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wlansvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WudfPf] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WudfRd] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WudfSvc] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WudfUsbccidDriver] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{36FC9E60-C465-11CF-8056-444553540000}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E965-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E967-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E969-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96A-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96B-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96F-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E972-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E973-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E974-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E975-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E977-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E97B-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E97D-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E980-E325-11CE-BFC1-08002BE10318}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}] [HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}] ---------- | Winsock (Whitelist) ---------- | Hosts # This MVPS HOSTS file is a free download from: # # http://winhelp2002.mvps.org/hosts.htm # # # # This *must* be the first line: 127.0.0.1 localhost # # # #**********************************************************# # ----------------- Updated: May-05-2015 ----------------- # #**********************************************************# # # # Disclaimer: this file is free to use for personal use # # only. Furthermore it is NOT permitted to copy any of the # # contents or host on any other site without permission or # # meeting the full criteria of the below license terms. # # # # This work is licensed under the Creative Commons # # Attribution-NonCommercial-ShareAlike License. # # http://creativecommons.org/licenses/by-nc-sa/4.0/ # # # # Entries with comments are all searchable via Google. # 127.0.0.1 localhost ::1 localhost #[IPv6] # [Start of entries generated by MVPS HOSTS] # [Misc A - Z] 0.0.0.0 fr.a2dfp.net [15640] More lines ---------- | Ping Envoi d'une requ?te 'ping' sur google.com [216.58.201.238] avec 32 octets de donn?es?: R?ponse de 216.58.201.238?: octets=32 temps=18 ms TTL=55 R?ponse de 216.58.201.238?: octets=32 temps=17 ms TTL=55 R?ponse de 216.58.201.238?: octets=32 temps=21 ms TTL=55 R?ponse de 216.58.201.238?: octets=32 temps=18 ms TTL=55 Statistiques Ping pour 216.58.201.238: Paquets?: envoy?s = 4, re?us = 4, perdus = 0 (perte 0%), Dur?e approximative des boucles en millisecondes : Minimum = 17ms, Maximum = 21ms, Moyenne = 18ms ---------- | @ [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Internet Explorer\Main] "Anchor Underline"=yes "Disable Script Debugger"=yes "DisableScriptDebuggerIE"=yes "Display Inline Images"=yes "Do404Search"=0x01000000 "Save_Session_History_On_Exit"=no "Search Page"=http://go.microsoft.com/fwlink/?LinkId=54896 "Show_FullURL"=no "Show_StatusBar"=yes "Show_ToolBar"=yes "Show_URLinStatusBar"=yes "Show_URLToolBar"=yes "Use_DlgBox_Colors"=yes "UseClearType"=no "XMLHTTP"=1 "Cache_Update_Frequency"=Once_Per_Session "Local Page"=C:\WINDOWS\system32\blank.htm "NoUpdateCheck"=1 "Enable Browser Extensions"=yes "Play_Background_Sounds"=yes "Play_Animations"=yes "Start Page"=http://google.fr/ "ImageStoreRandomFolder"=8ce3bn8 "Start Page Redirect Cache AcceptLangs"=fr-FR,fr;q=0.8,en-US;q=0.6,en;q=0.4,ja;q=0.2 "IE10RunOncePerInstallCompleted"=1 "IE10RunOnceCompletionTime"=0x866E7BF43A37D501 "DownloadWindowPlacement"=0x2C0000000000000000000000FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF50020000F0000000D0040000D0020000 "NotifyDownloadComplete"=yes "Move System Caret"=no "Expand Alt Text"=no "Enable AutoImageResize"=yes "EnableAlternativeCodec"=yes "Show image placeholders"=0 "GotoIntranetSiteForSingleWordEntry"=0 "UseThemes"=1 "Friendly http errors"=yes "Error Dlg Displayed On Every Error"=no "NscSingleExpand"=0 "SmoothScroll"=1 "DOMStorage"=1 "Isolation64Bit"=0 "ScriptDebugger_EnableHiddenTabs"=0 "ApplicationTileImmersiveActivation"=0 "AssociationActivationMode"=2 "StatusBarWeb"=1 "ForceGDIPlus"=0 "AlwaysShowMenus"=0 "ShutdownWaitForOnUnload"=0 "DNSPreresolution"=8 "SpellChecking"=1 "LangToolsBroker"={5bbd58bb-993e-4c17-8af6-3af8e908fca8} "DisablePasswordReveal"=0 "DisableRequiresActiveXPrompt"= "AutoSearch"=1 "SuppressScriptDebuggerDialog"=0 "PredictedViewExpansion"=100 "PredictedViewChangeThreshold"=10 "PredictedViewChangeThresholdPaint"=10 "ContentLayerCacheExpansion"=300 "RenderingLoopMaxTime"=250 "CSS_Compat"=doctype "Display Inline Videos"=1 "Print_Background"=no "Use Stylesheets"=1 "Disable Diagnostics Mode"=no "UseHR"=0 "Q300829"=0 "Cleanup HTCs"=0 "XDomainRequest"=1 "JScriptProfileCacheEventDelay"=5000 "CrossfadeMinTimeoutInMS"=30000 "CrossfadeMaxTimeoutInMS"=30000 "CrossfadeCurrentTimeoutInMS"=30000 "ScrollTimeoutInMS"=6000 "IE10RunOnceLastShown"=1 "IE10TourNoShow"=0 "IE10TourShown"=1 "IE10RecommendedSettingsNo"=0 "FrameTabWindow"=1 "AdminTabProcs"=1 "SessionMerging"=1 "FrameMerging"=1 "HangRecovery"=1 "DesktopTransparentCoverWindowTime"=8 "TSEnable"=1 "IsolationImmersive"=PMEM "TabShutdownDelay"=60000 "FrameShutdownDelay"=0 "Search Bar"=https://www.google.com/ "MinIEEnabled"=1 "FormSuggest Passwords"=yes "FormSuggest PW Ask"=yes "RefcountTracker"=0 "TabDragOnSingleProc"=0 "ForceBFCacheCandidacyPass"=0 "Fasterback"=1 "BackForwardInstrumentation"=0 "FullScreen"=no "OperationalData"=13 "CompatibilityFlags"=0 "Window_Placement"=0x2C0000000000000001000000FFFFFFFFFFFFFFFFFFFFFFFFFFFFFFFF00000000150000008007000010040000 "Start Page Redirect Cache_TIMESTAMP"=0xC696DF4C8EE6D001 "AutoHide"=yes "EdgeSwitchingOSBuildNumber"=10586.th2_release.160104-1513 "IE10TourShownTime"=0x866E7BF43A37D501 "Start Page_TIMESTAMP"=0xD27C57B95341D301 "SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy"=0x0100000015000000E97BFE2E607BA40F91BEE396AD3A145A180BBC7263020000000E00000049724F6B7A424B61754477253364 "IE10RunOnceLastShown_TIMESTAMP"=0xD1762557B740D501 "IE11EdgeNotifyTime"=0x05F5F97A6D7CD501 "EdgeReminderRemainingCount"=4 "SearchBandMigrationVersion"=1 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Internet settings] "DisableCachingOfSSLPages"=0 "IE5_UA_Backup_Flag"=5.0 "PrivacyAdvanced"=1 "SecureProtocols"=2688 "CertificateRevocation"=1 "User Agent"=Mozilla/4.0 (compatible; MSIE 8.0; Win32) "ZonesSecurityUpgrade"=0x866E7BF43A37D501 "EmailName"=IEUser@ "AutoConfigProxy"=wininet.dll "MimeExclusionListForCache"=multipart/mixed multipart/x-mixed-replace multipart/x-byteranges "WarnOnPost"=0x01000000 "UseSchannelDirectly"=0x01000000 "EnableHttp1_1"=1 "UrlEncoding"=0 "WarnonZoneCrossing"=0 "EnableNegotiate"=1 "MigrateProxy"=1 "ProxyEnable"=0 "DisableIDNPrompt"=0 "EnablePunycode"=1 "ShowPunycode"=0 "ProxyHttp1.1"=1 "EnableSPDY3_0"=1 "WarnOnPostRedirect"=1 "WarnonBadCertRecving"=1 "EnableAutodial"=0 "NoNetAutodial"=0 "BackgroundConnections"=1 "EnableSSL3Fallback"=1 "CreateUriCacheSize"=80 "CoInternetCombineIUriCacheSize"=80 "SecurityIdIUriCacheSize"=30 "SpecialFoldersCacheSize"=8 "PrivDiscUiShown"=1 "WarnOnIntranet"=1 "SyncMode5"=3 "GlobalUserOffline"=0 "LockDatabase"=132139713374239604 "MaxConnectionsPerServer"=6 "MaxConnectionsPer1_0Server"=8 "ProxyOverride"=*.local "WarNonBadCertReceving"=1 "WarNonHTTPSToHTTPRedirect"=1 [HKLM\Software\Microsoft\Internet Explorer\Main] "ApplicationTileImmersiveActivation"=1 "AssociationActivationMode"=0 "AutoHide"=yes "Start Page"=http://go.microsoft.com/fwlink/p/?LinkId=255141 "Anchor_Visitation_Horizon"=0x01000000 "Cache_Percent_of_Disk"=0x0A000000 "Default_Page_URL"=http://go.microsoft.com/fwlink/p/?LinkId=255141 "Default_Search_URL"=http://go.microsoft.com/fwlink/?LinkId=54896 "Default_Secondary_Page_URL"= "Delete_Temp_Files_On_Exit"=yes "Enable_Disk_Cache"=yes "Extensions Off Page"=about:NoAdd-ons "Local Page"=C:\Windows\System32\blank.htm "Placeholder_Height"=0x1A000000 "Placeholder_Width"=0x1A000000 "Search Page"=http://go.microsoft.com/fwlink/?LinkId=54896 "Security Risk Page"=about:SecurityRisk "Use_Async_DNS"=yes "x86AppPath"=C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE "DisableRandomFlighting"=0 "EnableLegacyEdgeSwitching"=1 "DoNotTrack"=1 [HKLM\Software\Microsoft\Internet Explorer\AboutURLs] "blank"=res://mshtml.dll/blank.htm "DesktopItemNavigationFailure"=res://ieframe.dll/navcancl.htm "Home"=270 "InPrivate"=res://ieframe.dll/inprivate.htm "NavigationCanceled"=res://ieframe.dll/navcancl.htm "NavigationFailure"=res://ieframe.dll/navcancl.htm "NoAdd-ons"=res://ieframe.dll/noaddon.htm "NoAdd-onsInfo"=res://ieframe.dll/noaddoninfo.htm "PostNotCached"=res://ieframe.dll/repost.htm "SecurityRisk"=res://ieframe.dll/securityatrisk.htm [HKLM\Software\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix] ""=http:// [HKLM\Software\Microsoft\Windows\CurrentVersion\URL\Prefixes] "ftp"=ftp:// "home"=http:// "mosaic"=http:// "www"=http:// [HKLM\Software\Microsoft\Windows\CurrentVersion\Internet settings] "ActiveXCache"=C:\Windows\Downloaded Program Files "CodeBaseSearchPath"=CODEBASE "EnablePunycode"=1 "MinorVersion"=0 "WarnOnIntranet"=1 "ProxyEnable"=0 "GlobalUserOffline"=0 "EnableHttp1_1"=1 "ProxyHttp1.1"=1 "ProxyOverride"=*.local "AutoConfigProxy"=wininet.dll [HKLM\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings] "CallLegacyWCMPolicies"=0 [HKLM\Software\WOW6432Node\Microsoft\Internet Explorer\Main] "ApplicationTileImmersiveActivation"=1 "AssociationActivationMode"=0 "AutoHide"=yes "Start Page"=http://go.microsoft.com/fwlink/p/?LinkId=255141 "Anchor_Visitation_Horizon"=0x01000000 "Cache_Percent_of_Disk"=0x0A000000 "Default_Page_URL"=http://go.microsoft.com/fwlink/p/?LinkId=255141 "Default_Search_URL"=http://go.microsoft.com/fwlink/?LinkId=54896 "Default_Secondary_Page_URL"= "Delete_Temp_Files_On_Exit"=yes "Enable_Disk_Cache"=yes "Extensions Off Page"=about:NoAdd-ons "Local Page"=C:\WINDOWS\System32\blank.htm "Placeholder_Height"=0x1A000000 "Placeholder_Width"=0x1A000000 "Search Page"=http://go.microsoft.com/fwlink/?LinkId=54896 "Security Risk Page"=about:SecurityRisk "Use_Async_DNS"=yes "x86AppPath"=C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE [HKLM\Software\WOW6432Node\Microsoft\Internet Explorer\AboutURLs] "blank"=res://mshtml.dll/blank.htm "DesktopItemNavigationFailure"=res://ieframe.dll/navcancl.htm "Home"=270 "InPrivate"=res://ieframe.dll/inprivate.htm "NavigationCanceled"=res://ieframe.dll/navcancl.htm "NavigationFailure"=res://ieframe.dll/navcancl.htm "NoAdd-ons"=res://ieframe.dll/noaddon.htm "NoAdd-onsInfo"=res://ieframe.dll/noaddoninfo.htm "PostNotCached"=res://ieframe.dll/repost.htm "SecurityRisk"=res://ieframe.dll/securityatrisk.htm [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix] ""=http:// [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\URL\Prefixes] "ftp"=ftp:// "home"=http:// "mosaic"=http:// "www"=http:// [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet settings] "ActiveXCache"=C:\Windows\Downloaded Program Files "CodeBaseSearchPath"=CODEBASE "EnablePunycode"=1 "MinorVersion"=0 "WarnOnIntranet"=1 [HKLM\Software\WOW6432Node\Policies\Microsoft\Windows\CurrentVersion\Internet Settings] "CallLegacyWCMPolicies"=0 ---------- | Proxy ---------- | reparsepoint ---------- | Detection of offsets ---------- | Notify [HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn] : "c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll ---------- | Execution FileExts [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3g2] "Progid"=divx_3g2_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.3gp] "Progid"=divx_3gp_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ASF] "Progid"=divx_asf_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.avi] "Progid"=divx_avi_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ccf] "Progid"=JDownloader2 2 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.div] "Progid"=divx_div_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.divx] "Progid"=divx_divx_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.dlc] "Progid"=JDownloader2 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.jdc] "Progid"=JDownloader2 1 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.metalink] "Progid"=JDownloader2 4 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mkv] "Progid"=divx_mkv_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mov] "Progid"=divx_mov_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mp4] "Progid"=divx_mp4_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpeg] "Progid"=divx_mpeg_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mpg] "Progid"=divx_mpg_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.qt] "Progid"=divx_qt_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.rsdf] "Progid"=JDownloader2 3 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.tix] "Progid"=divx_tix_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.VOB] "Progid"=divx_vob_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.wmv] "Progid"=divx_wmv_file [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xvid] "Progid"=divx_xvid_file ---------- | SIOI | SEH | URLSH [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D} -- C:\Windows\System32\EhStorShell.dll [15/09/2018 09:28:50] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81} -- %SystemRoot%\System32\cscui.dll [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516} -- C:\Program Files\Classic Shell\ClassicExplorer64.dll [20/04/2014 11:17:38] [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516} -- C:\Program Files\Classic Shell\ClassicExplorer32.dll [20/04/2014 11:17:34] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks] "{CFBFAE00-17A6-11D0-99CB-00C04FD64497}"= ---------- | Toolbar [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Internet Explorer\Toolbar] "Locked"=0 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser] "ITBar7Layout"=0x13000000000000000000000020000000100000000000000001000000000700005E010000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes] "Version"=5 "UpgradeTime"=0x866E7BF43A37D501 "DefaultPackCorrection"=1 "KnownProvidersUpgradeTime"=0x866E7BF43A37D501 "DefaultScope"={0633EE93-D776-472f-A0FF-E1416B8B2E3A} ---------- | Extensions [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Extensions\{92780B25-18CC-41C8-B9BE-3C9C571A8263}] : () - [] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-80C04F795683}] : (My IP Suite) - [] ---------- | SearchScopes [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] - (Bing) - https://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04 : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] - (@ieframe.dll,-12512) - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] - (@ieframe.dll,-12512) - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC : ---------- | Browser Helper Objects [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] -> (Java(tm) Plug-In SSV Helper) : C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [17/07/2019 13:52:20] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}] -> (Logitech SetPoint) : C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [18/05/2018 03:32:30] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] -> (Java(tm) Plug-In 2 SSV Helper) : C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [17/07/2019 13:52:20] [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}] -> (Adblock Plus for IE Browser Helper Object) : C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [25/02/2015 17:30:48] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}] -> (Java(tm) Plug-In SSV Helper) : C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [17/07/2019 13:52:20] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}] -> () : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}] -> (Logitech SetPoint) : C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [18/05/2018 03:32:30] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] -> (Java(tm) Plug-In 2 SSV Helper) : C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [17/07/2019 13:52:20] [HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFCB3198-32F3-4E8B-9539-4324694ED664}] -> (Adblock Plus for IE Browser Helper Object) : C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [25/02/2015 17:30:48] ---------- | Chrome C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\aapocclcgogkmnckokdopfmhonfmgoek = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\ajopnjidmegmdimjlfnijceegpefgped = : BetterTTV enhances Twitch with new features emotes and more. - short_name: BTTV - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\akipcefbjlmpbcejgdaopmmidpnjlhnb = : Use the Media Hint service to access the content you need on the internet. - Media Hint - permissions:[proxyhttps://mediahint.com/*webRequestwebRequestBlocking\u003Call_urls>] - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\aohghmighlieiainnegkcijnfilokake = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\apdfllckaahabafndbhieahigkjlhalf = : Google & co - https://drive.google.com/?usp=chrome_app - Google & co - [http://docs.google.com/http://drive.google.com/https://docs.google.com/https://drive.google.com/] - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\bfeknfgchonpnofdjokchhdhdnddhglm = : Makes Youtube go dark-side - Dark Skin for Youtube™ - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\bigefpfhnfcobdlfbedofhhaibnlghod = : Secure Cloud Storage - MEGA - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo = : Google & co - http://www.youtube.com - http://www.youtube.com - Google & co - http://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\bohapeiooecafommnlaiccilacgmkaoc = : Sad Panda - short_name: Sad Panda - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\cfhdojbkjhnklbpkdaibdccddilifddb = : __MSG_description__ - short_name: __MSG_name__ - permissions:[tabs\u003Call_urls>contextMenuswebRequestwebRequestBlockingwebNavigationstorageunlimitedStoragenotifications] - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm = : __MSG_extShortDesc__ - name: uBlock Origin - short_name: uBlock0 - permissions:[contextMenusprivacystoragetabsunlimitedStoragewebNavigationwebRequestwebRequestBlocking\u003Call_urls>] - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\coobgpohoikkiipiblmjeljniedjpjpf = : Google & co - http://www.google.com/webhp?source=search_app - Google & co - [*://www.google.com/search*://www.google.com/webhp*://www.google.com/imgres] - http://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\dfnoddgekoeiljeaekobnchnedoipgpc = : Search for the games that you have played with a certain summoner. - OP.GG Summoner Search - matches:[\u003Call_urls>] - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\fdcgdnkidjaadafnichfpabhfomcebme = : Google & co - short_name: ZenMate VPN - matches:[\u003Call_urls>] - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\felcaaldnbdncclmgdcncolpebgiejap = : Google & co - Google & co - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\fmhiapojnjcanpnldpckjhfbacjdmipa = : Google & co - Google & co - permissions:[webRequestactiveTabnotificationsstoragehttp://*.twitch.tv/*https://*.twitch.tv/*http://*.ttvnw.net/*http://*.justin.tv/*http://*.googlevideo.com/*https://*.googlevideo.com/*https://www.youtube.com/*http://www.youtube.com/*\u003Call_urls>] - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp = : __MSG_PRODUCT_DESCRIPTION__ - __MSG_PRODUCT_NAME__ - optional_permissions:[\u003Call_urls>] - 45833509441-41flc5qj3bha53cs0luji5vt7e4n8i4f.apps.googleusercontent.com - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi = : __MSG_extDesc__ - __MSG_extName__ - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\gjljknijpnfibppaijefibndmiabonep = : GeForce Experience Stream Client - GeForce Experience Stream Client - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\gkojfkhlekighikafcpjkiklfbnlmeio = : Google & co - short_name: Hola VPN - permissions:[proxywebRequestwebRequestBlocking\u003Call_urls>storagetabswebNavigationcookiescontextMenus] - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\glccgoppknfoonfajicijebeaedpnkfp = : __MSG_extDesc__ - __MSG_extName__ - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\hbmbeocpfcjgnpcppkokcnliokcedjpn = : Get all amazon's europeans stores prices on one page ! - Chromazon - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\hicepmjogaihmngebapbmkdnjllmhnfb = : Minimal Clean & Simple - Dark Theme with Light Page Background - short_name: Minimal - Dark Theme - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\hjdoplcnndgiblooccencgcggcoihigg = : __MSG_extensionDescription__ - default_title: __MSG_extensionName__ - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\kljmejbpilkadikecejccebmccagifhl = : Image Search Options for Chrome provides a set of highly customizable reverse image search context menu options. - Image Search Options - http://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\nmmhkkegccagdldgiimedpiccmgmieda = : Google & co - Google & co - 203784468217.apps.googleusercontent.com - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\okadibdjfemgnhjiembecghcbfknbfhg = : Enhances the Steam Experience - Enhanced Steam - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\pjkljhegncpnkpknbcohdijeoejaedia = : Google & co - https://mail.google.com/mail - Google & co - [*://mail.google.com/mail] - https://clients2.google.com/service/update2/crx C:\Users\Timothée\AppData\Local\Google\Chrome\User Data\Default\extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm = : Provider for discovery and services for mirroring of Chrome Media Router - Chrome Media Router - 919648714761-55j965o0km033psv3i9qls5mo3qtdrb0.apps.googleusercontent.com - https://clients2.google.com/service/update2/crx [HKLM\Software\Google\Chrome\Extensions\jeaohhlajejodfjadcponpnjgkiikocn] ---------- | Opera ---------- | Firefox [HKLM\Software\WOW6432Node\mozilla\Firefox\Extensions] "{F003DA68-8256-4b37-A6C4-350FA04494DF}"=C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\MozillaPlugins\@squareclock.com/SQ3DPlayer_Production_HBMV1] - (SquareClock 3D - Production_HBMV1) : C:\Users\Timothée\AppData\Local\SquareClock.Production_HBMV1\NPSQ3D.dll [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0] - (Unity Player 4.6.1f1) : C:\Users\Timothée\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\MozillaPlugins\ubisoft.com/uplaypc] - () : C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer] - (Adobe® Flash® Player 32.0.0.255 Plugin) : C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_255.dll [HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.221.2] - (Java™ Deployment Toolkit) : C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.221.2] - (Oracle® Next Generation Java™ Plug-In) : C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] - (Ag Player Plugin) : c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@adobe.com/FlashPlayer] - (Adobe® Flash® Player 32.0.0.255 Plugin) : C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_255.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0] - (DivX Web Player) : C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5] - (Intel IPT WebApi plugin) : C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater] - (This plugin updates Intel WebAPI component) : C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@java.com/DTPlugin,version=11.221.2] - (Java™ Deployment Toolkit) : C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.221.2] - (Oracle® Next Generation Java™ Plug-In) : C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0] - (Ag Player Plugin) : c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3] - (Google Update) : C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9] - (Google Update) : C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5] - (VLC Multimedia Plugin) : C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.1] - (VLC Multimedia Plugin) : C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.4] - (VLC Multimedia Plugin) : C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6] - (VLC Multimedia Plugin) : C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.3] - (VLC Multimedia Plugin) : C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.4] - (VLC Multimedia Plugin) : C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.6] - (VLC Multimedia Plugin) : C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [HKLM\Software\WOW6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.7.1] - (VLC Multimedia Plugin) : C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll C:\Users\Timothée\AppData\Roaming\Mozilla\Firefox\Profiles\0tlrhazj.default-1495128339362\Prefs.js user_pref("app.normandy.startupRolloutPrefs.extensions.fxmonitor.enabled", true); user_pref("browser.startup.homepage_override.buildID", "20190827005903"); user_pref("browser.startup.homepage_override.mstone", "69.0"); user_pref("extensions.activeThemeID", "{1afaee19-8dde-4b0e-8c84-f46ca0f02f06}"); user_pref("extensions.blocklist.lastModified", "Mon, 30 Sep 2019 17:37:51 GMT"); user_pref("extensions.blocklist.pingCountTotal", 48); user_pref("extensions.blocklist.pingCountVersion", 4); user_pref("extensions.bootstrappedAddons", "{}"); user_pref("extensions.databaseSchema", 31); user_pref("extensions.e10s.rollout.blocklist", ""); user_pref("extensions.e10s.rollout.hasAddon", false); user_pref("extensions.e10s.rollout.policy", "50allmpc"); user_pref("extensions.e10sBlockedByAddons", false); user_pref("extensions.e10sMultiBlockedByAddons", false); user_pref("extensions.enabledAddons", "%7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:37.0.1"); user_pref("extensions.fxmonitor.firstAlertShown", true); user_pref("extensions.getAddons.cache.lastUpdate", 1569105447); user_pref("extensions.getAddons.databaseSchema", 5); user_pref("extensions.incognito.migrated", true); user_pref("extensions.lastAppBuildId", "20190827005903"); user_pref("extensions.lastAppVersion", "69.0"); user_pref("extensions.lastPlatformVersion", "69.0"); user_pref("extensions.pendingOperations", false); user_pref("extensions.shownSelectionUI", true); user_pref("extensions.systemAddonSet", "{\"schema\":1,\"addons\":{}}"); user_pref("extensions.ui.dictionary.hidden", true); user_pref("extensions.ui.lastCategory", "addons://list/extension"); user_pref("extensions.ui.locale.hidden", true); user_pref("extensions.webcompat.perform_injections", true); user_pref("extensions.webcompat.perform_ua_overrides", true); user_pref("extensions.webextensions.ExtensionStorageIDB.migrated.screenshots@mozilla.org", true); user_pref("extensions.webextensions.ExtensionStorageIDB.migrated.{e4a8a97b-f2ed-450b-b12d-ee082ba24781}", true); user_pref("extensions.webextensions.uuids", "{\"screenshots@mozilla.org\":\"83fe2bc7-eecf-4b85-b129-d995b4a67cc2\",\"webcompat@mozilla.org\":\"4a803fb5-ded3-4448-b9b0-60e388bcc6f9\",\"formautofill@mozilla.org\":\"22f69e09-cf8d-4c0a-80e6-86b6faedb4f2\",\"webcompat-reporter@mozilla.org\":\"e8d550b6-2767-499d-826b-097efc8a8a36\",\"fxmonitor@mozilla.org\":\"77f4d3e3-306b-4731-8abb-78c2d63b5085\",\"{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\":\"9706b801-233e-4263-b7ab-c2d44bdcc965\",\"baidu-code-update@mozillaonline.com\":\"e61fef29-4232-4ec3-a5ca-d4a94a6629c1\",\"default-theme@mozilla.org\":\"00b5339d-51ca-4980-9e0e-2e07bc64622d\",\"google@search.mozilla.org\":\"9386adb4-659c-4882-a5a1-4897f126803f\",\"bing@search.mozilla.org\":\"a97c5e7a-768c-4f88-a374-21ccc5f6614a\",\"amazon@search.mozilla.org\":\"9acfccba-6ff1-431a-8dec-a9059eab22dd\",\"ddg@search.mozilla.org\":\"5eeea50d-6f9c-4000-bf2f-af2844f7c0f7\",\"ebay@search.mozilla.org\":\"fb200480-d350-4f0a-bd9b-4e69f7b1a03f\",\"qwant@search.mozilla.org\":\"adf0181a-c503-4395-8279-0e31d36efe52\",\"wikipedia@search.mozilla.org\":\"8e1260a9-a8f1-4ae9-9cc2-e376c75353d0\",\"{1afaee19-8dde-4b0e-8c84-f46ca0f02f06}\":\"c6dd786f-60e9-45ec-bd78-45d79691c0a0\",\"firefox@betterttv.net\":\"1910ae16-6005-4b42-9903-7308fe0bde83\"}"); user_pref("extensions.xpiState", "{\"app-global\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"d\":\"C:\\\\Program Files (x86)\\\\Mozilla Firefox\\\\browser\\\\extensions\\\\{972ce4c6-7e08-4474-a285-3208198ce6fd}\",\"e\":true,\"v\":\"57.0\",\"st\":1445010286054,\"mt\":1445010285762}},\"winreg-app-global\":{\"{F003DA68-8256-4b37-A6C4-350FA04494DF}\":{\"d\":\"C:\\\\Program Files\\\\Logitech\\\\SetPointP\\\\LogiSmoothFirefoxExt\",\"e\":false,\"v\":\"6.5\",\"st\":1476478461651,\"mt\":1440547208000}}}"); [Profile0] - Name=default-1495128339362 -> Profiles/0tlrhazj.default-1495128339362 ---------- | DNS [HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters] "DhcpNameServer"=192.168.1.1 [HKLM\SYSTEM\ControlSet001\services\Tcpip\Parameters\Interfaces\{20873e01-ab15-4d65-9492-5be765687438}] "DhcpNameServer"=192.168.1.1 [HKLM\SYSTEM\ControlSet001\services\Tcpip\Parameters\Interfaces\{e091f1c1-f196-41ba-9d82-4dd2b754ac35}] "DhcpNameServer"=192.168.42.129 [HKLM\SYSTEM\ControlSet001\services\Tcpip\Parameters\Interfaces\{f1241e72-b721-44f4-9e3a-f666dc953fe6}] "DhcpNameServer"=192.168.43.1 [HKLM\SYSTEM\ControlSet001\services\Tcpip\Parameters\Interfaces\{f1241e72-b721-44f4-9e3a-f666dc953fe6}] "NameServer"=8.8.8.8,8.8.4.4 [HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{20873e01-ab15-4d65-9492-5be765687438}] "DhcpNameServer"=192.168.1.1 [HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{e091f1c1-f196-41ba-9d82-4dd2b754ac35}] "DhcpNameServer"=192.168.42.129 [HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{f1241e72-b721-44f4-9e3a-f666dc953fe6}] "DhcpNameServer"=192.168.43.1 [HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{f1241e72-b721-44f4-9e3a-f666dc953fe6}] "NameServer"=8.8.8.8,8.8.4.4 ---------- | Applications [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Classes\Applications\CurseClient.exe] : "C:\Users\Timothée\AppData\Local\Apps\2.0\WG3RCZZL.WB2\XVOTGDEL.G21\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe" "%1" [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Classes\Applications\Skype.exe] : "C:\Program Files (x86)\Skype\Phone\Skype.exe" "%1" [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Classes\Applications\uTorrent.exe] : "C:\Users\Timothée\AppData\Roaming\uTorrent\uTorrent.exe" "%1" [HKLM\SOFTWARE\Classes\Applications\hl2.exe] : "c:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe" "%1" [HKLM\SOFTWARE\Classes\Applications\iexplore.exe] : "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 [HKLM\SOFTWARE\Classes\Applications\notepad.exe] : %SystemRoot%\system32\NOTEPAD.EXE %1 [HKLM\SOFTWARE\Classes\Applications\ois.exe] : C:\PROGRA~2\MICROS~3\Office12\OIS.EXE /shellOpen "%1" [HKLM\SOFTWARE\Classes\Applications\opera.exe] : "C:\Program Files (x86)\Opera\Launcher.exe" "%1" [HKLM\SOFTWARE\Classes\Applications\photoviewer.dll] : %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 [HKLM\SOFTWARE\Classes\Applications\VCDMount.exe] : "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDMount.exe" "%1" [HKLM\SOFTWARE\Classes\Applications\vlc.exe] : "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file "%1" [HKLM\SOFTWARE\Classes\Applications\wmplayer.exe] : "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" [HKLM\SOFTWARE\Classes\Applications\wordpad.exe] : "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\hl2.exe] : "c:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe" "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\iexplore.exe] : "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\notepad.exe] : %SystemRoot%\system32\NOTEPAD.EXE %1 [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\ois.exe] : C:\PROGRA~2\MICROS~3\Office12\OIS.EXE /shellOpen "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\opera.exe] : "C:\Program Files (x86)\Opera\Launcher.exe" "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\photoviewer.dll] : %SystemRoot%\System32\rundll32.exe "%ProgramFiles%\Windows Photo Viewer\PhotoViewer.dll", ImageView_Fullscreen %1 [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\VCDMount.exe] : "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDMount.exe" "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\vlc.exe] : "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file "%1" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\wmplayer.exe] : "%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe" /Open "%L" [HKLM\SOFTWARE\WOW6432Node\Classes\Applications\wordpad.exe] : "%ProgramFiles%\Windows NT\Accessories\WORDPAD.EXE" "%1" ---------- | SvcHost (Whitelist) [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost] "DcomLaunch"=Power LSM BrokerInfrastructure PlugPlay DcomLaunch SystemEventsBroker DeviceInstall "rdxgroup"=RetailDemo "Camera"=FrameS "LocalServiceNoNetworkFirewall"=BFE mpssvc "diagnostics"=DiagSvc "PrintWorkflow"=PrintWorkflowUserSvc "wusvcs"=WaaSMedicSvc "BcastDVRUserService"=BcastDVRUserService "GraphicsPerfSvcGroup"=GraphicsPerfSvc "ClipboardSvcGroup"=cbdhsvc "BthAppGroup"=BluetoothUserService "smbsvcs"=lanmanserver "DevicesFlow"=DevicesFlowUserSvc ConsentUxUserSvc DevicePickerUserSvc "PeerDist"=PeerDistSvc "AssignedAccessManagerSvc"=AssignedAccessManagerSvc "osrss"=osrss [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost] "DcomLaunch"=DcomLaunch DeviceInstall "PrintWorkflow"=PrintWorkflowUserSvc "smbsvcs"=lanmanserver ---------- | SvcHost - Netsvcs (Whitelist) ---------- | Software [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\11BitStudios] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\4kdownload.com] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\5 Bits Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\7-Zip] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Ableton] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\AdblockPlus] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Aequus Gaming] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\AMD] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\AMD Driver Downloader] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\AMPLITUDE Studios] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\AppDataLow] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\AppWork] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Arabuusimiehet] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Arcane Kids] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\ASMB] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\ATI] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Audiosurf, LLC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\AvastAdSDK] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Berserk Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Berzerk Studio] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\bigtapir] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\BigToeGames] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\BitTorrent] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Blizzard Entertainment] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Boneloaf] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Brightsoft] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Buddy Cops] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\BugSplat] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Cambridge Silicon Radio] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Caphyon] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Choice Provisions] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Chromium] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Clewcat Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Clients] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Clubic] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Code Avarice] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Codemaster] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Codeusa Software] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Considerable Content] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Crystal Dynamics] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\DefaultCompany] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\devpro] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\DevPro, LLC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\DirectShow] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Disc Soft] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Discord] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Disney Interactive] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\DivX] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Dodge Roll] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Dolphin] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\EBSoft] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Edipsoft Yellow Prospection] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Eidos] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\ej-technologies] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Elaborate Bytes] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\ElAmigos] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Electronic Arts] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Emulators] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Enterbrain] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Epic Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\EPSON] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\EPSON Software Updater] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Fraps3] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Free Lives] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\g3n-h@ckm@n] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\GadgetGames] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Gameforge4d] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Gearbox Software] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Gigoia Studios] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\GNU] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\GOG.com] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Good Pidge Productions] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Google] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\GreenSphereStudios] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\GrindingGearGames] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Happy Polygon LLC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Hextris] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Hopoo Games, LLC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\IGA] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\illusion] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\IM Providers] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Imagination Technologies] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Indigo Rose] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Intel] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\IronOak Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\JaboSoft] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\JavaSoft] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\JustUsLab] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\KC Softwares] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Klei Entertainment] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Landfall] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\LeaderTech] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Legend Studio] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Levi D. Smith] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Lightworks] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\LogiShrd] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Logitech] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Macromedia] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\MADrigal] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\MainConcept] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Malwarebytes] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Martin Prikryl] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\MasterIndie] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Midnight Art Show] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Milkstone Studios] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\mIRC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Mojang] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Mommys Best Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\MountAndBladeWarbandKeys] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Mozilla] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\MozillaPlugins] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\MuHa Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Mumble] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\myfingershurt] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\N-Fusion Interactive] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Nadeo] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Neal And Jonah] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Nestle] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Netscape] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\NinjaStar] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\NoBrakesGames] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Northcode Inc] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\nwjs] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\ODBC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Open Media LLC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\OpenOffice] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Opera Software] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Oracle] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\osu!] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Out of Bounds Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Overwolf] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\PageRaptor] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\PC SOFT] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\PCSX2] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\PDFArea Software] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Perfect World Platform Client] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Pipeworks] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Piriform] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Pixellore] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Plantronics] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\PluginAddon] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Policies] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\PowerISO] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\PROTeam] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\ProtectedStorage] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\puush] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\QtProject] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Ramjet Anvil] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Raptr] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Razer] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Realtek] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Redbeet Interactive] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Refract] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\RegisteredApplications] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Remedy Entertainment] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Riot Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\ROBLOX Corporation] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\RobloxReg] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Robot Gentleman] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Room710Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Ross Ridge] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Samsung] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\SecuROM] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Seifert] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\SEIKO EPSON CORPORATION] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\ShinyTechnologies] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Skype] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\skypeapp-101001144871] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\SmallGamesInfo] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\SmartDraw.com] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Smartly Dressed Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Smith Micro] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Softland] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\softorbits] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Sony Creative Software] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Spoon] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\srylain Inc.] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Stellar Sky Games] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Streets of Rogue] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\StudioQTRobloxReg] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Stunlock Studios] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\SuperDuperGameCompany] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\SyncEngines] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\sysinternals] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\System Requirements Lab] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\SystemQQX] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Tangentix] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Tartube] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Team 17 Digital ltd.] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Team Dogpit] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Team Fractal Alligator] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Team HalfBeard] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Team Scorpion] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\TeamK17] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\TeamSpeak 3 Client] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\tequibo] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Terraria] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\The Artistocrats] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Thorium Entertainment] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\TMS] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Trash] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Trion Team] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Trolltech] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Twitch] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Ubisoft] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Unity] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\user] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Valve] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\VB and VBA Program Settings] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Vidas Šalavejus] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\VRChat] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\WinRAR] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\WinRAR SFX] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Wizards Of The Coast] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Wow6432Node] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\AppDataLow\Software\DivX] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\AppDataLow\Software\JavaSoft] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\AppDataLow\Software\Microsoft] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\AppDataLow\Software\Unity] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Active Setup] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\ActiveMovie] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\ActiveSync] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\AppV] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Assistance] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\AuthCookies] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Avalon.Graphics] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\BingASDS] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Calc] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\CalendarRT] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Clipboard] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Command Processor] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\CommsAPHost] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\ComPstUI] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Connection Manager] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\ContactsRT] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\CTF] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\DeviceDirectory] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\DeviceSync] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\DirectInput] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\DirectPlayNATHelp] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\DirectX Diagnostic Tool] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\DusmSvc] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Ease of Access] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\EventSystem] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Exchange] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\F12] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\FamilyStore] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Fax] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Feeds] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\FTP] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\GameBar] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\GameBarApi] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\IAM] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\IdentityCRL] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\IME] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\IMEMIP] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Input] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\InputMethod] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\InputPersonalization] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Installer] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Internet Connection Wizard] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Internet Explorer] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Internet Mail and News] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Java VM] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Keyboard] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\LanguageOverlay] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\MediaPlayer] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Messaging] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Microsoft Management Console] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\MicrosoftEdge] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\MobilePC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\MS Design Tools] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\MSF] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\MSNMessenger] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Multimedia] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Narrator] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Notepad] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Office] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\OneDrive] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Osk] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\PaidWiFi] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Payment] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\PeerNet] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Personalization] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Phone] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Pim] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\PlayToReceiver] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Poom] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\PowerShell] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\RAS AutoDial] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\RAS Phonebook] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Remote Assistance] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\RTC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\ScreenMagnifier] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Scrunch] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Sensors] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Shared] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Shared Tools] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Shell] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Siuf] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Speech] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Speech Virtual] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Speech_OneCore] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Spelling] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\SQMClient] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\StorageLibrary] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\SystemCertificates] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\TabletTip] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\TelemetryClient] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\TPG] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\UCCPlatform] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\UEV] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Unified Store] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Unistore] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\UserData] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\UserDataService] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\VBA] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Visual Basic] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\WAB] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\WcmSvc] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Web Authentication Broker] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Web Service Providers] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\wfs] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Defender Security Center] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Live] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Mail Setup] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Media] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows NT] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Photo Viewer] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Script] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Script Host] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Search] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Security Health] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Windows Services] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\Wisp] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\XAML] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\XboxLive] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\RestartManager] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\AssignedAccessConfiguration] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\CurrentVersion] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\DWM] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\PrivacySettingsBeforeCreatorsUpdate] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\Shell] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\TabletPC] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\Windows Error Reporting] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows\Winlogon] [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\Software\Microsoft\Windows NT\CurrentVersion] [HKLM\Software\7-Zip] [HKLM\Software\91e3c17a-d790-5dd1-9237-0b5abf524a16] [HKLM\Software\Ableton] [HKLM\Software\Adblock Plus for IE] [HKLM\Software\AdsFix] [HKLM\Software\AGEIA Technologies] [HKLM\Software\Alienware] [HKLM\Software\AMD] [HKLM\Software\AMDDVR] [HKLM\Software\ATI] [HKLM\Software\ATI Technologies] [HKLM\Software\Cambridge Silicon Radio] [HKLM\Software\Clients] [HKLM\Software\CPUID] [HKLM\Software\cybelsoft] [HKLM\Software\CyberGhost] [HKLM\Software\DefaultUserEnvironment] [HKLM\Software\Dell] [HKLM\Software\Disc Soft] [HKLM\Software\DivX] [HKLM\Software\EBSoft] [HKLM\Software\ej-technologies] [HKLM\Software\EPSON] [HKLM\Software\EpsonNet] [HKLM\Software\FileZilla 3] [HKLM\Software\Fortemedia] [HKLM\Software\g3n-h@ckm@n] [HKLM\Software\Google] [HKLM\Software\IM Providers] [HKLM\Software\INextUUID] [HKLM\Software\Intel] [HKLM\Software\JavaSoft] [HKLM\Software\JreMetrics] [HKLM\Software\Khronos] [HKLM\Software\Logitech] [HKLM\Software\Macromedia] [HKLM\Software\Martin Prikryl] [HKLM\Software\Microsoft] [HKLM\Software\Mozilla] [HKLM\Software\mozilla.org] [HKLM\Software\MozillaPlugins] [HKLM\Software\Nuance] [HKLM\Software\ODBC] [HKLM\Software\OEM] [HKLM\Software\Oracle] [HKLM\Software\Partner] [HKLM\Software\Piriform] [HKLM\Software\Plantronics] [HKLM\Software\Policies] [HKLM\Software\PowerISO] [HKLM\Software\Propellerhead Software] [HKLM\Software\Python] [HKLM\Software\Realtek] [HKLM\Software\RegisteredApplications] [HKLM\Software\SAMSUNG] [HKLM\Software\Smith Micro] [HKLM\Software\Sony Creative Software] [HKLM\Software\SRS Labs] [HKLM\Software\sysinternals] [HKLM\Software\TAP-Windows] [HKLM\Software\TeamSpeak 3 Client] [HKLM\Software\VB-Audio] [HKLM\Software\Waves Audio] [HKLM\Software\WOW6432Node] [HKLM\SOFTWARE\Microsoft\.NETFramework] [HKLM\SOFTWARE\Microsoft\AccountsControl] [HKLM\SOFTWARE\Microsoft\Active Setup] [HKLM\SOFTWARE\Microsoft\ActiveSync] [HKLM\SOFTWARE\Microsoft\ADs] [HKLM\SOFTWARE\Microsoft\Advanced INF Setup] [HKLM\SOFTWARE\Microsoft\ALG] [HKLM\SOFTWARE\Microsoft\AllUserInstallAgent] [HKLM\SOFTWARE\Microsoft\AMSI] [HKLM\SOFTWARE\Microsoft\Analog] [HKLM\SOFTWARE\Microsoft\AppServiceProtocols] [HKLM\SOFTWARE\Microsoft\AppV] [HKLM\SOFTWARE\Microsoft\ASP.NET] [HKLM\SOFTWARE\Microsoft\Assistance] [HKLM\SOFTWARE\Microsoft\AuthHost] [HKLM\SOFTWARE\Microsoft\BidInterface] [HKLM\SOFTWARE\Microsoft\BitLockerCsp] [HKLM\SOFTWARE\Microsoft\CallAndMessagingEnhancement] [HKLM\SOFTWARE\Microsoft\Cellular] [HKLM\SOFTWARE\Microsoft\Chkdsk] [HKLM\SOFTWARE\Microsoft\Clipboard] [HKLM\SOFTWARE\Microsoft\ClipboardServer] [HKLM\SOFTWARE\Microsoft\COM3] [HKLM\SOFTWARE\Microsoft\Command Processor] [HKLM\SOFTWARE\Microsoft\CommsAPHost] [HKLM\SOFTWARE\Microsoft\Composition] [HKLM\SOFTWARE\Microsoft\CoreShell] [HKLM\SOFTWARE\Microsoft\Cryptography] [HKLM\SOFTWARE\Microsoft\CTF] [HKLM\SOFTWARE\Microsoft\DataAccess] [HKLM\SOFTWARE\Microsoft\DataCollection] [HKLM\SOFTWARE\Microsoft\DataMarketplace] [HKLM\SOFTWARE\Microsoft\DataSharing] [HKLM\SOFTWARE\Microsoft\DDDS] [HKLM\SOFTWARE\Microsoft\DevDiv] [HKLM\SOFTWARE\Microsoft\Device Association Framework] [HKLM\SOFTWARE\Microsoft\DeviceReg] [HKLM\SOFTWARE\Microsoft\DFP] [HKLM\SOFTWARE\Microsoft\Dfrg] [HKLM\SOFTWARE\Microsoft\DFS] [HKLM\SOFTWARE\Microsoft\DiagnosticLogCSP] [HKLM\SOFTWARE\Microsoft\DirectDraw] [HKLM\SOFTWARE\Microsoft\DirectInput] [HKLM\SOFTWARE\Microsoft\DirectMusic] [HKLM\SOFTWARE\Microsoft\DirectPlay8] [HKLM\SOFTWARE\Microsoft\DirectPlayNATHelp] [HKLM\SOFTWARE\Microsoft\DirectShow] [HKLM\SOFTWARE\Microsoft\DirectX] [HKLM\SOFTWARE\Microsoft\DownloadManager] [HKLM\SOFTWARE\Microsoft\Driver Signing] [HKLM\SOFTWARE\Microsoft\DRM] [HKLM\SOFTWARE\Microsoft\DusmSvc] [HKLM\SOFTWARE\Microsoft\DVDNavigator] [HKLM\SOFTWARE\Microsoft\DVR] [HKLM\SOFTWARE\Microsoft\DXP] [HKLM\SOFTWARE\Microsoft\EAPSIMMethods] [HKLM\SOFTWARE\Microsoft\Enrollment] [HKLM\SOFTWARE\Microsoft\Enrollments] [HKLM\SOFTWARE\Microsoft\EnterpriseCertificates] [HKLM\SOFTWARE\Microsoft\EnterpriseDataProtection] [HKLM\SOFTWARE\Microsoft\EnterpriseResourceManager] [HKLM\SOFTWARE\Microsoft\EventSounds] [HKLM\SOFTWARE\Microsoft\EventSystem] [HKLM\SOFTWARE\Microsoft\F12] [HKLM\SOFTWARE\Microsoft\FamilyStore] [HKLM\SOFTWARE\Microsoft\Fax] [HKLM\SOFTWARE\Microsoft\FaxServer] [HKLM\SOFTWARE\Microsoft\Feeds] [HKLM\SOFTWARE\Microsoft\FilePicker] [HKLM\SOFTWARE\Microsoft\FilterDS] [HKLM\SOFTWARE\Microsoft\FingerKB] [HKLM\SOFTWARE\Microsoft\FTH] [HKLM\SOFTWARE\Microsoft\Function Discovery] [HKLM\SOFTWARE\Microsoft\Fusion] [HKLM\SOFTWARE\Microsoft\FuzzyDS] [HKLM\SOFTWARE\Microsoft\GameOverlay] [HKLM\SOFTWARE\Microsoft\HTMLHelp] [HKLM\SOFTWARE\Microsoft\Hub] [HKLM\SOFTWARE\Microsoft\Hvsi] [HKLM\SOFTWARE\Microsoft\IdentityCRL] [HKLM\SOFTWARE\Microsoft\IdentityStore] [HKLM\SOFTWARE\Microsoft\IHDS] [HKLM\SOFTWARE\Microsoft\IMAPI] [HKLM\SOFTWARE\Microsoft\IME] [HKLM\SOFTWARE\Microsoft\IMEJP] [HKLM\SOFTWARE\Microsoft\IMEKR] [HKLM\SOFTWARE\Microsoft\IMETC] [HKLM\SOFTWARE\Microsoft\InProcLogger] [HKLM\SOFTWARE\Microsoft\Input] [HKLM\SOFTWARE\Microsoft\InputMethod] [HKLM\SOFTWARE\Microsoft\InputPersonalization] [HKLM\SOFTWARE\Microsoft\Internet Account Manager] [HKLM\SOFTWARE\Microsoft\Internet Domains] [HKLM\SOFTWARE\Microsoft\Internet Explorer] [HKLM\SOFTWARE\Microsoft\IsoBurn] [HKLM\SOFTWARE\Microsoft\LanguageOverlay] [HKLM\SOFTWARE\Microsoft\LexiconUpdate] [HKLM\SOFTWARE\Microsoft\Location] [HKLM\SOFTWARE\Microsoft\MdmCommon] [HKLM\SOFTWARE\Microsoft\MdmDiagnostics] [HKLM\SOFTWARE\Microsoft\MediaEngine] [HKLM\SOFTWARE\Microsoft\MediaPlayer] [HKLM\SOFTWARE\Microsoft\MemoryDiagnostic] [HKLM\SOFTWARE\Microsoft\Messaging] [HKLM\SOFTWARE\Microsoft\MessengerService] [HKLM\SOFTWARE\Microsoft\Microsoft Camera Codec Pack] [HKLM\SOFTWARE\Microsoft\Microsoft SQL Server Compact Edition] [HKLM\SOFTWARE\Microsoft\MiracastReceiver] [HKLM\SOFTWARE\Microsoft\MMC] [HKLM\SOFTWARE\Microsoft\Mobile] [HKLM\SOFTWARE\Microsoft\MpSigStub] [HKLM\SOFTWARE\Microsoft\MSBuild] [HKLM\SOFTWARE\Microsoft\MSDE] [HKLM\SOFTWARE\Microsoft\MSDRM] [HKLM\SOFTWARE\Microsoft\MSDTC] [HKLM\SOFTWARE\Microsoft\MSF] [HKLM\SOFTWARE\Microsoft\MSIME] [HKLM\SOFTWARE\Microsoft\MSLicensing] [HKLM\SOFTWARE\Microsoft\MSMQ] [HKLM\SOFTWARE\Microsoft\MSN Apps] [HKLM\SOFTWARE\Microsoft\MTF] [HKLM\SOFTWARE\Microsoft\MTFFuzzyFactors] [HKLM\SOFTWARE\Microsoft\MTFInputType] [HKLM\SOFTWARE\Microsoft\MTFKeyboardMappings] [HKLM\SOFTWARE\Microsoft\Multimedia] [HKLM\SOFTWARE\Microsoft\Multivariant] [HKLM\SOFTWARE\Microsoft\NET Framework Setup] [HKLM\SOFTWARE\Microsoft\NetSh] [HKLM\SOFTWARE\Microsoft\Network] [HKLM\SOFTWARE\Microsoft\NetworkAccessProtection] [HKLM\SOFTWARE\Microsoft\Non-Driver Signing] [HKLM\SOFTWARE\Microsoft\Notepad] [HKLM\SOFTWARE\Microsoft\ODBC] [HKLM\SOFTWARE\Microsoft\OEM] [HKLM\SOFTWARE\Microsoft\Office] [HKLM\SOFTWARE\Microsoft\OfficeCSP] [HKLM\SOFTWARE\Microsoft\Ole] [HKLM\SOFTWARE\Microsoft\OnlineProviders] [HKLM\SOFTWARE\Microsoft\Outlook Express] [HKLM\SOFTWARE\Microsoft\Palm] [HKLM\SOFTWARE\Microsoft\Personalization] [HKLM\SOFTWARE\Microsoft\Phone] [HKLM\SOFTWARE\Microsoft\Photos] [HKLM\SOFTWARE\Microsoft\PIM] [HKLM\SOFTWARE\Microsoft\PLA] [HKLM\SOFTWARE\Microsoft\PlayReady] [HKLM\SOFTWARE\Microsoft\PlayToReceiver] [HKLM\SOFTWARE\Microsoft\PointOfService] [HKLM\SOFTWARE\Microsoft\Policies] [HKLM\SOFTWARE\Microsoft\PolicyManager] [HKLM\SOFTWARE\Microsoft\Poom] [HKLM\SOFTWARE\Microsoft\PowerShell] [HKLM\SOFTWARE\Microsoft\Print] [HKLM\SOFTWARE\Microsoft\Provisioning] [HKLM\SOFTWARE\Microsoft\PushRouter] [HKLM\SOFTWARE\Microsoft\RADAR] [HKLM\SOFTWARE\Microsoft\Ras] [HKLM\SOFTWARE\Microsoft\RAS AutoDial] [HKLM\SOFTWARE\Microsoft\RcsPresence] [HKLM\SOFTWARE\Microsoft\Reliability Analysis] [HKLM\SOFTWARE\Microsoft\Remediation] [HKLM\SOFTWARE\Microsoft\RemovalTools] [HKLM\SOFTWARE\Microsoft\rempl] [HKLM\SOFTWARE\Microsoft\RendezvousApps] [HKLM\SOFTWARE\Microsoft\RFC1156Agent] [HKLM\SOFTWARE\Microsoft\Router] [HKLM\SOFTWARE\Microsoft\Rpc] [HKLM\SOFTWARE\Microsoft\SchedulingAgent] [HKLM\SOFTWARE\Microsoft\SDDS] [HKLM\SOFTWARE\Microsoft\Security Center] [HKLM\SOFTWARE\Microsoft\SecurityManager] [HKLM\SOFTWARE\Microsoft\SEMgr] [HKLM\SOFTWARE\Microsoft\Sensors] [HKLM\SOFTWARE\Microsoft\Settings] [HKLM\SOFTWARE\Microsoft\Shared] [HKLM\SOFTWARE\Microsoft\Shared Tools] [HKLM\SOFTWARE\Microsoft\Shared Tools Location] [HKLM\SOFTWARE\Microsoft\Shell] [HKLM\SOFTWARE\Microsoft\SideShow] [HKLM\SOFTWARE\Microsoft\sih] [HKLM\SOFTWARE\Microsoft\Silverlight] [HKLM\SOFTWARE\Microsoft\Siuf] [HKLM\SOFTWARE\Microsoft\SoftGrid] [HKLM\SOFTWARE\Microsoft\Software] [HKLM\SOFTWARE\Microsoft\Speech] [HKLM\SOFTWARE\Microsoft\Speech_OneCore] [HKLM\SOFTWARE\Microsoft\SQMClient] [HKLM\SOFTWARE\Microsoft\StrongName] [HKLM\SOFTWARE\Microsoft\Sync Framework] [HKLM\SOFTWARE\Microsoft\Sysprep] [HKLM\SOFTWARE\Microsoft\SystemCertificates] [HKLM\SOFTWARE\Microsoft\SystemSettings] [HKLM\SOFTWARE\Microsoft\TableTextService] [HKLM\SOFTWARE\Microsoft\TabletTip] [HKLM\SOFTWARE\Microsoft\TaskFlowDataEngine] [HKLM\SOFTWARE\Microsoft\Tcpip] [HKLM\SOFTWARE\Microsoft\TelemetryClient] [HKLM\SOFTWARE\Microsoft\Terminal Server Client] [HKLM\SOFTWARE\Microsoft\TermServLicensing] [HKLM\SOFTWARE\Microsoft\TMM] [HKLM\SOFTWARE\Microsoft\TouchPrediction] [HKLM\SOFTWARE\Microsoft\TPG] [HKLM\SOFTWARE\Microsoft\Tpm] [HKLM\SOFTWARE\Microsoft\Tracing] [HKLM\SOFTWARE\Microsoft\Transaction Server] [HKLM\SOFTWARE\Microsoft\TV System Services] [HKLM\SOFTWARE\Microsoft\uDRM] [HKLM\SOFTWARE\Microsoft\UEV] [HKLM\SOFTWARE\Microsoft\Unified Store] [HKLM\SOFTWARE\Microsoft\Unistore] [HKLM\SOFTWARE\Microsoft\UNP] [HKLM\SOFTWARE\Microsoft\UPnP Control Point] [HKLM\SOFTWARE\Microsoft\UPnP Device Host] [HKLM\SOFTWARE\Microsoft\UserData] [HKLM\SOFTWARE\Microsoft\UserManager] [HKLM\SOFTWARE\Microsoft\Virtual Machine] [HKLM\SOFTWARE\Microsoft\WAB] [HKLM\SOFTWARE\Microsoft\Wallet] [HKLM\SOFTWARE\Microsoft\Wbem] [HKLM\SOFTWARE\Microsoft\WcmSvc] [HKLM\SOFTWARE\Microsoft\WIMMount] [HKLM\SOFTWARE\Microsoft\Windows] [HKLM\SOFTWARE\Microsoft\Windows Advanced Threat Protection] [HKLM\SOFTWARE\Microsoft\Windows Defender] [HKLM\SOFTWARE\Microsoft\Windows Defender Security Center] [HKLM\SOFTWARE\Microsoft\Windows Desktop Search] [HKLM\SOFTWARE\Microsoft\Windows Embedded] [HKLM\SOFTWARE\Microsoft\Windows Mail] [HKLM\SOFTWARE\Microsoft\Windows Media Device Manager] [HKLM\SOFTWARE\Microsoft\Windows Media Foundation] [HKLM\SOFTWARE\Microsoft\Windows Media Player NSS] [HKLM\SOFTWARE\Microsoft\Windows Messaging Subsystem] [HKLM\SOFTWARE\Microsoft\Windows NT] [HKLM\SOFTWARE\Microsoft\Windows Performance Toolkit] [HKLM\SOFTWARE\Microsoft\Windows Phone] [HKLM\SOFTWARE\Microsoft\Windows Photo Viewer] [HKLM\SOFTWARE\Microsoft\Windows Portable Devices] [HKLM\SOFTWARE\Microsoft\Windows Script Host] [HKLM\SOFTWARE\Microsoft\Windows Search] [HKLM\SOFTWARE\Microsoft\Windows Security Health] [HKLM\SOFTWARE\Microsoft\Windows10Upgrader] [HKLM\SOFTWARE\Microsoft\WindowsRuntime] [HKLM\SOFTWARE\Microsoft\WindowsSelfHost] [HKLM\SOFTWARE\Microsoft\WindowsStore] [HKLM\SOFTWARE\Microsoft\WindowsUpdate] [HKLM\SOFTWARE\Microsoft\Wisp] [HKLM\SOFTWARE\Microsoft\WlanSvc] [HKLM\SOFTWARE\Microsoft\Wlpasvc] [HKLM\SOFTWARE\Microsoft\Wow64] [HKLM\SOFTWARE\Microsoft\WSDAPI] [HKLM\SOFTWARE\Microsoft\WwanSvc] [HKLM\SOFTWARE\Microsoft\XAML] [HKLM\SOFTWARE\Microsoft\XboxGameSaveStorage] [HKLM\SOFTWARE\Microsoft\XboxLive] [HKLM\Software\Microsoft\Windows\AssignedAccessConfiguration] [HKLM\Software\Microsoft\Windows\AssignedAccessCsp] [HKLM\Software\Microsoft\Windows\ClickNote] [HKLM\Software\Microsoft\Windows\CurrentVersion] [HKLM\Software\Microsoft\Windows\Dwm] [HKLM\Software\Microsoft\Windows\DynamicManagement] [HKLM\Software\Microsoft\Windows\EnterpriseResourceManager] [HKLM\Software\Microsoft\Windows\Heat] [HKLM\Software\Microsoft\Windows\HTML Help] [HKLM\Software\Microsoft\Windows\ITStorage] [HKLM\Software\Microsoft\Windows\PrivacySettingsBeforeCreatorsUpdate] [HKLM\Software\Microsoft\Windows\ScheduledDiagnostics] [HKLM\Software\Microsoft\Windows\ScriptedDiagnosticsProvider] [HKLM\Software\Microsoft\Windows\Shell] [HKLM\Software\Microsoft\Windows\Tablet PC] [HKLM\Software\Microsoft\Windows\TabletPC] [HKLM\Software\Microsoft\Windows\UpdateApi] [HKLM\Software\Microsoft\Windows\Windows Error Reporting] [HKLM\Software\Microsoft\Windows\Windows Search] [HKLM\Software\Microsoft\Windows NT\CurrentVersion] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\appmodel] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\AssignedAccessManagerSvc] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\BcastDVRUserService] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\btagservice] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\BthAppGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\Camera] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\ClipboardSvcGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\defragsvc] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\DevicesFlow] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\diagnostics] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\GraphicsPerfSvcGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\ICService] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalService] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceAndNoImpersonation] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceHttp] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNetworkRestricted] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNetworkRestrictedDhcpLmHosts] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNoNetwork] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNoNetworkFirewall] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalSystemNetworkRestricted] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\netsvcs] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkService] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceDnsNla] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceRemoteDesktopHyperVAgent] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceRemoteDesktopPublishing] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\print] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\PrintWorkflow] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\rdxgroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\RmSvc] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\SDRSVC] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\swprv] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\termsvcs] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\UnistackSvcGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\utcsvc] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\WepHostSvcGroup] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\wercplsupport] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\wsappx] [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\wusvcs] [HKLM\Software\WOW6432Node\7-Zip] [HKLM\Software\WOW6432Node\Activision] [HKLM\Software\WOW6432Node\Adobe] [HKLM\Software\WOW6432Node\AdwCleaner] [HKLM\Software\WOW6432Node\AGEIA Technologies] [HKLM\Software\WOW6432Node\AMD] [HKLM\Software\WOW6432Node\Aspyr] [HKLM\Software\WOW6432Node\ATI] [HKLM\Software\WOW6432Node\ATI Technologies] [HKLM\Software\WOW6432Node\bethesda softworks] [HKLM\Software\WOW6432Node\Blizzard Entertainment] [HKLM\Software\WOW6432Node\Caphyon] [HKLM\Software\WOW6432Node\cd projekt red] [HKLM\Software\WOW6432Node\CDDB] [HKLM\Software\WOW6432Node\Cisco Systems, Inc.] [HKLM\Software\WOW6432Node\CyberGhost] [HKLM\Software\WOW6432Node\DivX] [HKLM\Software\WOW6432Node\DuoDianOnline] [HKLM\Software\WOW6432Node\EBSoft] [HKLM\Software\WOW6432Node\Elaborate Bytes] [HKLM\Software\WOW6432Node\Electronic Arts] [HKLM\Software\WOW6432Node\Epic Games] [HKLM\Software\WOW6432Node\EpicGames] [HKLM\Software\WOW6432Node\EPSON] [HKLM\Software\WOW6432Node\EpsonNet] [HKLM\Software\WOW6432Node\FileZilla 3] [HKLM\Software\WOW6432Node\FileZilla Client] [HKLM\Software\WOW6432Node\Fraps] [HKLM\Software\WOW6432Node\g3n-h@ckm@n] [HKLM\Software\WOW6432Node\Gameforge] [HKLM\Software\WOW6432Node\Gameforge4d] [HKLM\Software\WOW6432Node\GanttProject] [HKLM\Software\WOW6432Node\Garena] [HKLM\Software\WOW6432Node\GNU] [HKLM\Software\WOW6432Node\GOG.com] [HKLM\Software\WOW6432Node\Google] [HKLM\Software\WOW6432Node\Heliovisions] [HKLM\Software\WOW6432Node\I-Doser] [HKLM\Software\WOW6432Node\IM Providers] [HKLM\Software\WOW6432Node\InstallShield] [HKLM\Software\WOW6432Node\Intel] [HKLM\Software\WOW6432Node\isaactracker] [HKLM\Software\WOW6432Node\Jacal] [HKLM\Software\WOW6432Node\JavaSoft] [HKLM\Software\WOW6432Node\JreMetrics] [HKLM\Software\WOW6432Node\Khronos] [HKLM\Software\WOW6432Node\Kitware] [HKLM\Software\WOW6432Node\Licenses] [HKLM\Software\WOW6432Node\Lightworks] [HKLM\Software\WOW6432Node\Logitech] [HKLM\Software\WOW6432Node\LOOT] [HKLM\Software\WOW6432Node\Macromedia] [HKLM\Software\WOW6432Node\Malwarebytes' Anti-Malware] [HKLM\Software\WOW6432Node\Martin Prikryl] [HKLM\Software\WOW6432Node\Microsoft] [HKLM\Software\WOW6432Node\Mojang] [HKLM\Software\WOW6432Node\Mozilla] [HKLM\Software\WOW6432Node\mozilla.org] [HKLM\Software\WOW6432Node\MozillaPlugins] [HKLM\Software\WOW6432Node\Mr DJ] [HKLM\Software\WOW6432Node\MSI] [HKLM\Software\WOW6432Node\NETGEAR] [HKLM\Software\WOW6432Node\NovaLogic] [HKLM\Software\WOW6432Node\Nuance] [HKLM\Software\WOW6432Node\NVIDIA Corporation] [HKLM\Software\WOW6432Node\OBS Studio] [HKLM\Software\WOW6432Node\ODBC] [HKLM\Software\WOW6432Node\Open Broadcaster Software] [HKLM\Software\WOW6432Node\OpenAL] [HKLM\Software\WOW6432Node\OpenOffice] [HKLM\Software\WOW6432Node\Opera Software] [HKLM\Software\WOW6432Node\Oracle] [HKLM\Software\WOW6432Node\Origin] [HKLM\Software\WOW6432Node\Origin Games] [HKLM\Software\WOW6432Node\Overwolf] [HKLM\Software\WOW6432Node\PDFArea Software] [HKLM\Software\WOW6432Node\Phase Shift] [HKLM\Software\WOW6432Node\Piriform] [HKLM\Software\WOW6432Node\Plantronics] [HKLM\Software\WOW6432Node\PocketSoft] [HKLM\Software\WOW6432Node\Pokemon Uranium Team] [HKLM\Software\WOW6432Node\PowerISO] [HKLM\Software\WOW6432Node\Python] [HKLM\Software\WOW6432Node\Raptr] [HKLM\Software\WOW6432Node\Razer] [HKLM\Software\WOW6432Node\re-logic] [HKLM\Software\WOW6432Node\Realtek] [HKLM\Software\WOW6432Node\Realtek Semiconductor Corp.] [HKLM\Software\WOW6432Node\Remedy Entertainment] [HKLM\Software\WOW6432Node\Riot Games] [HKLM\Software\WOW6432Node\Riot Games, Inc] [HKLM\Software\WOW6432Node\Samsung] [HKLM\Software\WOW6432Node\Skype] [HKLM\Software\WOW6432Node\Slysoft] [HKLM\Software\WOW6432Node\SmartDraw.com] [HKLM\Software\WOW6432Node\Smith Micro] [HKLM\Software\WOW6432Node\Sony Creative Software] [HKLM\Software\WOW6432Node\SPEEDLINK] [HKLM\Software\WOW6432Node\square enix] [HKLM\Software\WOW6432Node\Swyx] [HKLM\Software\WOW6432Node\sysinternals] [HKLM\Software\WOW6432Node\T-Com] [HKLM\Software\WOW6432Node\Team Scorpion] [HKLM\Software\WOW6432Node\THQ] [HKLM\Software\WOW6432Node\TP-LINK] [HKLM\Software\WOW6432Node\Twitch] [HKLM\Software\WOW6432Node\Ubi Soft] [HKLM\Software\WOW6432Node\Ubi Soft Entertainment Inc.] [HKLM\Software\WOW6432Node\ubisoft] [HKLM\Software\WOW6432Node\Valve] [HKLM\Software\WOW6432Node\VideoLAN] [HKLM\Software\WOW6432Node\Volatile] [HKLM\Software\WOW6432Node\WinRAR] [HKLM\Software\WOW6432Node\Wizards of the Coast] [HKLM\Software\WOW6432Node\Worlds, Inc.] [HKLM\Software\WOW6432Node\WOW6432Node] [HKLM\Software\WOW6432Node\Zemi Interactive] [HKLM\Software\WOW6432Node\Clients] [HKLM\Software\WOW6432Node\Policies] [HKLM\Software\WOW6432Node\RegisteredApplications] [HKLM\Software\WOW6432Node\Microsoft\.NETFramework] [HKLM\Software\WOW6432Node\Microsoft\Active Setup] [HKLM\Software\WOW6432Node\Microsoft\ADs] [HKLM\Software\WOW6432Node\Microsoft\Advanced INF Setup] [HKLM\Software\WOW6432Node\Microsoft\AMSI] [HKLM\Software\WOW6432Node\Microsoft\AppServiceProtocols] [HKLM\Software\WOW6432Node\Microsoft\AppV] [HKLM\Software\WOW6432Node\Microsoft\ASP.NET] [HKLM\Software\WOW6432Node\Microsoft\Assistance] [HKLM\Software\WOW6432Node\Microsoft\AuthHost] [HKLM\Software\WOW6432Node\Microsoft\BidInterface] [HKLM\Software\WOW6432Node\Microsoft\BitLockerCsp] [HKLM\Software\WOW6432Node\Microsoft\ClipboardServer] [HKLM\Software\WOW6432Node\Microsoft\Command Processor] [HKLM\Software\WOW6432Node\Microsoft\Cryptography] [HKLM\Software\WOW6432Node\Microsoft\CTF] [HKLM\Software\WOW6432Node\Microsoft\DataAccess] [HKLM\Software\WOW6432Node\Microsoft\DevDiv] [HKLM\Software\WOW6432Node\Microsoft\Device Association Framework] [HKLM\Software\WOW6432Node\Microsoft\Direct3D] [HKLM\Software\WOW6432Node\Microsoft\DirectDraw] [HKLM\Software\WOW6432Node\Microsoft\DirectInput] [HKLM\Software\WOW6432Node\Microsoft\DirectMusic] [HKLM\Software\WOW6432Node\Microsoft\DirectPlay] [HKLM\Software\WOW6432Node\Microsoft\DirectPlay8] [HKLM\Software\WOW6432Node\Microsoft\DirectPlayNATHelp] [HKLM\Software\WOW6432Node\Microsoft\DirectShow] [HKLM\Software\WOW6432Node\Microsoft\DirectX] [HKLM\Software\WOW6432Node\Microsoft\DownloadManager] [HKLM\Software\WOW6432Node\Microsoft\DRM] [HKLM\Software\WOW6432Node\Microsoft\DVDNavigator] [HKLM\Software\WOW6432Node\Microsoft\DVR] [HKLM\Software\WOW6432Node\Microsoft\EAPSIMMethods] [HKLM\Software\WOW6432Node\Microsoft\ENROLLMENTS] [HKLM\Software\WOW6432Node\Microsoft\EnterpriseResourceManager] [HKLM\Software\WOW6432Node\Microsoft\Exchange] [HKLM\Software\WOW6432Node\Microsoft\F12] [HKLM\Software\WOW6432Node\Microsoft\Fax] [HKLM\Software\WOW6432Node\Microsoft\Feeds] [HKLM\Software\WOW6432Node\Microsoft\FilePicker] [HKLM\Software\WOW6432Node\Microsoft\Function Discovery] [HKLM\Software\WOW6432Node\Microsoft\Fusion] [HKLM\Software\WOW6432Node\Microsoft\GameOverlay] [HKLM\Software\WOW6432Node\Microsoft\HTMLHelp] [HKLM\Software\WOW6432Node\Microsoft\IdentityCRL] [HKLM\Software\WOW6432Node\Microsoft\IdentityStore] [HKLM\Software\WOW6432Node\Microsoft\IMAPI] [HKLM\Software\WOW6432Node\Microsoft\IME] [HKLM\Software\WOW6432Node\Microsoft\IMEJP] [HKLM\Software\WOW6432Node\Microsoft\IMEKR] [HKLM\Software\WOW6432Node\Microsoft\IMETC] [HKLM\Software\WOW6432Node\Microsoft\Immersive Browser] [HKLM\Software\WOW6432Node\Microsoft\InputMethod] [HKLM\Software\WOW6432Node\Microsoft\Internet Account Manager] [HKLM\Software\WOW6432Node\Microsoft\Internet Domains] [HKLM\Software\WOW6432Node\Microsoft\Internet Explorer] [HKLM\Software\WOW6432Node\Microsoft\IsoBurn] [HKLM\Software\WOW6432Node\Microsoft\Jet] [HKLM\Software\WOW6432Node\Microsoft\Location] [HKLM\Software\WOW6432Node\Microsoft\Machine Debug Manager] [HKLM\Software\WOW6432Node\Microsoft\MediaEngine] [HKLM\Software\WOW6432Node\Microsoft\MediaPlayer] [HKLM\Software\WOW6432Node\Microsoft\MessengerService] [HKLM\Software\WOW6432Node\Microsoft\Microsoft Camera Codec Pack] [HKLM\Software\WOW6432Node\Microsoft\Microsoft Reference] [HKLM\Software\WOW6432Node\Microsoft\Microsoft SQL Server Compact Edition] [HKLM\Software\WOW6432Node\Microsoft\MiracastReceiver] [HKLM\Software\WOW6432Node\Microsoft\MMC] [HKLM\Software\WOW6432Node\Microsoft\MSBuild] [HKLM\Software\WOW6432Node\Microsoft\MSDE] [HKLM\Software\WOW6432Node\Microsoft\MSDRM] [HKLM\Software\WOW6432Node\Microsoft\MSDTC] [HKLM\Software\WOW6432Node\Microsoft\MSF] [HKLM\Software\WOW6432Node\Microsoft\MSLicensing] [HKLM\Software\WOW6432Node\Microsoft\MSN Apps] [HKLM\Software\WOW6432Node\Microsoft\MSNDeviceManager] [HKLM\Software\WOW6432Node\Microsoft\MSOSOAP] [HKLM\Software\WOW6432Node\Microsoft\MSSearch36] [HKLM\Software\WOW6432Node\Microsoft\MTF] [HKLM\Software\WOW6432Node\Microsoft\Multimedia] [HKLM\Software\WOW6432Node\Microsoft\NET Framework Setup] [HKLM\Software\WOW6432Node\Microsoft\NetSh] [HKLM\Software\WOW6432Node\Microsoft\Network] [HKLM\Software\WOW6432Node\Microsoft\NetworkAccessProtection] [HKLM\Software\WOW6432Node\Microsoft\Notepad] [HKLM\Software\WOW6432Node\Microsoft\ODBC] [HKLM\Software\WOW6432Node\Microsoft\OEM] [HKLM\Software\WOW6432Node\Microsoft\Office] [HKLM\Software\WOW6432Node\Microsoft\Office Server] [HKLM\Software\WOW6432Node\Microsoft\OnlineProviders] [HKLM\Software\WOW6432Node\Microsoft\Outlook Express] [HKLM\Software\WOW6432Node\Microsoft\Palm] [HKLM\Software\WOW6432Node\Microsoft\Photos] [HKLM\Software\WOW6432Node\Microsoft\PLA] [HKLM\Software\WOW6432Node\Microsoft\Policies] [HKLM\Software\WOW6432Node\Microsoft\PowerShell] [HKLM\Software\WOW6432Node\Microsoft\Print] [HKLM\Software\WOW6432Node\Microsoft\Provisioning] [HKLM\Software\WOW6432Node\Microsoft\RADAR] [HKLM\Software\WOW6432Node\Microsoft\RendezvousApps] [HKLM\Software\WOW6432Node\Microsoft\RFC1156Agent] [HKLM\Software\WOW6432Node\Microsoft\RTC] [HKLM\Software\WOW6432Node\Microsoft\SchedulingAgent] [HKLM\Software\WOW6432Node\Microsoft\Security Center] [HKLM\Software\WOW6432Node\Microsoft\Sensors] [HKLM\Software\WOW6432Node\Microsoft\Shared] [HKLM\Software\WOW6432Node\Microsoft\Shared Tools] [HKLM\Software\WOW6432Node\Microsoft\Shared Tools Location] [HKLM\Software\WOW6432Node\Microsoft\SideShow] [HKLM\Software\WOW6432Node\Microsoft\Silverlight] [HKLM\Software\WOW6432Node\Microsoft\Software] [HKLM\Software\WOW6432Node\Microsoft\SPEECH] [HKLM\Software\WOW6432Node\Microsoft\Speech_OneCore] [HKLM\Software\WOW6432Node\Microsoft\SQMClient] [HKLM\Software\WOW6432Node\Microsoft\Sync Framework] [HKLM\Software\WOW6432Node\Microsoft\SystemSettings] [HKLM\Software\WOW6432Node\Microsoft\TableTextService] [HKLM\Software\WOW6432Node\Microsoft\TabletTip] [HKLM\Software\WOW6432Node\Microsoft\Tcpip] [HKLM\Software\WOW6432Node\Microsoft\Terminal Server Client] [HKLM\Software\WOW6432Node\Microsoft\TouchPrediction] [HKLM\Software\WOW6432Node\Microsoft\TPG] [HKLM\Software\WOW6432Node\Microsoft\Tpm] [HKLM\Software\WOW6432Node\Microsoft\Tracing] [HKLM\Software\WOW6432Node\Microsoft\TV System Services] [HKLM\Software\WOW6432Node\Microsoft\uDRM] [HKLM\Software\WOW6432Node\Microsoft\UEV] [HKLM\Software\WOW6432Node\Microsoft\Updates] [HKLM\Software\WOW6432Node\Microsoft\UPnP Control Point] [HKLM\Software\WOW6432Node\Microsoft\UPnP Device Host] [HKLM\Software\WOW6432Node\Microsoft\VBA] [HKLM\Software\WOW6432Node\Microsoft\VisualStudio] [HKLM\Software\WOW6432Node\Microsoft\VSTA] [HKLM\Software\WOW6432Node\Microsoft\VSTAHost] [HKLM\Software\WOW6432Node\Microsoft\VSTAHostConfig] [HKLM\Software\WOW6432Node\Microsoft\WAB] [HKLM\Software\WOW6432Node\Microsoft\WBEM] [HKLM\Software\WOW6432Node\Microsoft\WIMMount] [HKLM\Software\WOW6432Node\Microsoft\Windows] [HKLM\Software\WOW6432Node\Microsoft\Windows Desktop Search] [HKLM\Software\WOW6432Node\Microsoft\Windows Live] [HKLM\Software\WOW6432Node\Microsoft\Windows Mail] [HKLM\Software\WOW6432Node\Microsoft\Windows Media Device Manager] [HKLM\Software\WOW6432Node\Microsoft\Windows Media Foundation] [HKLM\Software\WOW6432Node\Microsoft\Windows Media Player NSS] [HKLM\Software\WOW6432Node\Microsoft\Windows Messaging Subsystem] [HKLM\Software\WOW6432Node\Microsoft\Windows NT] [HKLM\Software\WOW6432Node\Microsoft\Windows Phone] [HKLM\Software\WOW6432Node\Microsoft\Windows Photo Viewer] [HKLM\Software\WOW6432Node\Microsoft\Windows Portable Devices] [HKLM\Software\WOW6432Node\Microsoft\Windows Script Host] [HKLM\Software\WOW6432Node\Microsoft\WindowsRuntime] [HKLM\Software\WOW6432Node\Microsoft\WindowsUpdate] [HKLM\Software\WOW6432Node\Microsoft\Wisp] [HKLM\Software\WOW6432Node\Microsoft\WlanSvc] [HKLM\Software\WOW6432Node\Microsoft\WSDAPI] [HKLM\Software\WOW6432Node\Microsoft\XNA] [HKLM\Software\WOW6432Node\Microsoft\Cellular] [HKLM\Software\WOW6432Node\Microsoft\COM3] [HKLM\Software\WOW6432Node\Microsoft\DeviceReg] [HKLM\Software\WOW6432Node\Microsoft\DFS] [HKLM\Software\WOW6432Node\Microsoft\Driver Signing] [HKLM\Software\WOW6432Node\Microsoft\EnterpriseCertificates] [HKLM\Software\WOW6432Node\Microsoft\EventSystem] [HKLM\Software\WOW6432Node\Microsoft\FingerKB] [HKLM\Software\WOW6432Node\Microsoft\FuzzyDS] [HKLM\Software\WOW6432Node\Microsoft\Input] [HKLM\Software\WOW6432Node\Microsoft\LanguageOverlay] [HKLM\Software\WOW6432Node\Microsoft\Messaging] [HKLM\Software\WOW6432Node\Microsoft\MSMQ] [HKLM\Software\WOW6432Node\Microsoft\MTFFuzzyFactors] [HKLM\Software\WOW6432Node\Microsoft\MTFInputType] [HKLM\Software\WOW6432Node\Microsoft\MTFKeyboardMappings] [HKLM\Software\WOW6432Node\Microsoft\Non-Driver Signing] [HKLM\Software\WOW6432Node\Microsoft\Ole] [HKLM\Software\WOW6432Node\Microsoft\Phone] [HKLM\Software\WOW6432Node\Microsoft\Pim] [HKLM\Software\WOW6432Node\Microsoft\Poom] [HKLM\Software\WOW6432Node\Microsoft\Ras] [HKLM\Software\WOW6432Node\Microsoft\Rpc] [HKLM\Software\WOW6432Node\Microsoft\SecurityManager] [HKLM\Software\WOW6432Node\Microsoft\Semgr] [HKLM\Software\WOW6432Node\Microsoft\Shell] [HKLM\Software\WOW6432Node\Microsoft\SystemCertificates] [HKLM\Software\WOW6432Node\Microsoft\TermServLicensing] [HKLM\Software\WOW6432Node\Microsoft\Transaction Server] [HKLM\Software\WOW6432Node\Microsoft\Unified Store] [HKLM\Software\WOW6432Node\Microsoft\UserData] [HKLM\Software\WOW6432Node\Microsoft\Windows Search] [HKLM\Software\WOW6432Node\Microsoft\XAML] [HKLM\Software\WOW6432Node\Microsoft\Windows\ClickNote] [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion] [HKLM\Software\WOW6432Node\Microsoft\Windows\Dwm] [HKLM\Software\WOW6432Node\Microsoft\Windows\EnterpriseResourceManager] [HKLM\Software\WOW6432Node\Microsoft\Windows\Heat] [HKLM\Software\WOW6432Node\Microsoft\Windows\Help] [HKLM\Software\WOW6432Node\Microsoft\Windows\HTML Help] [HKLM\Software\WOW6432Node\Microsoft\Windows\ITStorage] [HKLM\Software\WOW6432Node\Microsoft\Windows\ScriptedDiagnosticsProvider] [HKLM\Software\WOW6432Node\Microsoft\Windows\Tablet PC] [HKLM\Software\WOW6432Node\Microsoft\Windows\UpdateApi] [HKLM\Software\WOW6432Node\Microsoft\Windows\Windows Error Reporting] [HKLM\Software\WOW6432Node\Microsoft\Windows\Windows Search] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\appmodel] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalService] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceAndNoImpersonation] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceHttp] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNetworkRestricted] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNetworkRestrictedDhcpLmHosts] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNoNetwork] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalServiceNoNetworkFirewall] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\LocalSystemNetworkRestricted] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\netsvcs] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkService] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceDnsNla] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceRemoteDesktopHyperVAgent] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\NetworkServiceRemoteDesktopPublishing] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\PrintWorkflow] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\termsvcs] [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\wusvcs] ---------- | Drives ---------- | C: [06/10/2019 19:45:27] - |SHD| - [5913642] - C:\$RECYCLE.BIN [29/08/2019 09:44:50] - |HD| - [161508440] - C:\$WINDOWS.~BT [09/06/2018 10:05:26] - |D| - [0] - C:\8336500659725115574 [06/10/2019 15:26:47] - |D| - [38455214212] - C:\AdsFix [MD5.F10A7D797B70FA777D352F3C142B216D] - [06/10/2019 15:27:27] - |A| - (.-.) - [71611] - (0.0.0.0) - C:\AdsFix_06_10_2019_19_41_14.txt [14/06/2015 15:45:06] - |D| - [17494247] - C:\AdwCleaner [21/10/2014 12:50:23] - |D| - [38099178186] - C:\AMD [27/07/2017 16:58:20] - |HD| - [7701428490] - C:\ArcTemp [27/01/2016 20:18:04] - |D| - [0] - C:\BluetoothExchangeFolder [MD5.93B885ADFE0DA089CDF634904FD59F71] - [22/08/2013 17:44:04] - |ASH| - (.-.) - [1] - (0.0.0.0) - C:\BOOTNXT [21/10/2014 14:28:49] - |SHD| - [106566368] - C:\Config.Msi [27/08/2016 21:54:39] - |D| - [562688] - C:\d32ed01d1c7a7c3f7804c44f [22/08/2015 11:44:52] - |D| - [140] - C:\deploy [10/07/2015 14:21:38] - |SHD| - [0] - C:\Documents and Settings [24/04/2015 21:13:28] - |D| - [0] - C:\Downloads [14/01/2016 23:38:10] - |D| - [44719033] - C:\DRIVERS [21/10/2014 14:31:28] - |RHD| - [0] - C:\ESD [MD5.9147A93F43D8E58218EBCB15FDA888C9] - [07/11/2007 08:00:40] - |A| - (.-.) - [17734] - (0.0.0.0) - C:\eula.1028.txt [MD5.9147A93F43D8E58218EBCB15FDA888C9] - [07/11/2007 08:00:40] - |A| - (.-.) - [17734] - (0.0.0.0) - C:\eula.1031.txt [MD5.99C22D4A31F4EAD4351B71D6F4E5F6A1] - [07/11/2007 08:00:40] - |A| - (.-.) - [10134] - (0.0.0.0) - C:\eula.1033.txt [MD5.9147A93F43D8E58218EBCB15FDA888C9] - [07/11/2007 08:00:40] - |A| - (.-.) - [17734] - (0.0.0.0) - C:\eula.1036.txt [MD5.9147A93F43D8E58218EBCB15FDA888C9] - [07/11/2007 08:00:40] - |A| - (.-.) - [17734] - (0.0.0.0) - C:\eula.1040.txt [MD5.9B15A3A055CC6E67EA191A1B7885649A] - [07/11/2007 08:00:40] - |A| - (.-.) - [118] - (0.0.0.0) - C:\eula.1041.txt [MD5.9147A93F43D8E58218EBCB15FDA888C9] - [07/11/2007 08:00:40] - |A| - (.-.) - [17734] - (0.0.0.0) - C:\eula.1042.txt [MD5.9147A93F43D8E58218EBCB15FDA888C9] - [07/11/2007 08:00:40] - |A| - (.-.) - [17734] - (0.0.0.0) - C:\eula.2052.txt [MD5.9147A93F43D8E58218EBCB15FDA888C9] - [07/11/2007 08:00:40] - |A| - (.-.) - [17734] - (0.0.0.0) - C:\eula.3082.txt [27/10/2014 17:16:55] - |D| - [3249485] - C:\Fraps [27/11/2014 18:05:22] - |D| - [14031277660] - C:\Games [MD5.0A6B586FABD072BD7382B5E24194EAC7] - [16/01/2008 12:48:06] - |A| - (.-.) - [1110] - (0.0.0.0) - C:\globdata.ini [15/08/2015 13:17:02] - |D| - [5622458690] - C:\GOG Games [MD5.D41D8CD98F00B204E9800998ECF8427E] - [15/04/2019 18:58:12] - |ASH| - (.-.) - [3405778944] - (0.0.0.0) - C:\hiberfil.sys [29/11/2015 13:48:48] - |D| - [5729316994] - C:\illusion [MD5.E015A2D8890E2A96A93CA818F834C45B] - [16/01/2008 13:23:40] - |A| - (.© Microsoft Corporation. - External Installer.) - [855040] - (9.0.21022.8) - C:\install.exe [MD5.0DA9AB4977F3E7BA8C65734DF42FDAB6] - [16/01/2008 12:48:14] - |A| - (.-.) - [843] - (0.0.0.0) - C:\install.ini [MD5.4151A4D07640863783F837E588235837] - [07/11/2007 08:03:18] - |A| - (.(C) Microsoft Corporation. - UI Wrapper Resource DLL.) - [76304] - (9.0.21022.8) - C:\install.res.1028.dll [MD5.3B8A82E04238655EAEF97E074FB29911] - [07/11/2007 08:03:18] - |A| - (.© Microsoft Corporation. Alle Rechte vorbehalten. - Ressourcen-DLL für UI-Wrapper.) - [96272] - (9.0.21022.8) - C:\install.res.1031.dll [MD5.9EDEB8B1C5C0A4CD3A3016B85108127D] - [07/11/2007 08:03:18] - |A| - (.© Microsoft Corporation. - UI Wrapper Resource DLL.) - [91152] - (9.0.21022.8) - C:\install.res.1033.dll [MD5.AFBCFDD558EAC4C655DDB2E622CD5E44] - [16/01/2008 13:27:40] - |A| - (.© Microsoft Corporation. Tous droits réservés. - UI Wrapper Resource DLL.) - [96272] - (9.0.21022.8) - C:\install.res.1036.dll [MD5.6310AB8FC9E3DBEE80592FC453A34FEE] - [07/11/2007 08:03:18] - |A| - (.© Microsoft Corporation. Tutti i diritti riservati. - DLL di risorse del wrapper dell'interfaccia utente.) - [95248] - (9.0.21022.8) - C:\install.res.1040.dll [MD5.13ED4517152203DE4BC52ACC0255D952] - [07/11/2007 08:03:18] - |A| - (.(C) Copyright Microsoft Corporation. - UI Wrapper Resource DLL.) - [81424] - (9.0.21022.8) - C:\install.res.1041.dll [MD5.0D4FB4095EA49C1EC89B9E8DB0B936A3] - [07/11/2007 08:03:18] - |A| - (.(C) Microsoft Corporation. - UI ?? ??? DLL.) - [79888] - (9.0.21022.8) - C:\install.res.1042.dll [MD5.D7366B34E8AFB605C39EF56E2201FE85] - [07/11/2007 08:03:18] - |A| - (.(C) Microsoft Corporation???????? - ???????? DLL.) - [75792] - (9.0.21022.8) - C:\install.res.2052.dll [MD5.41BB37A347121F3E5E88D85100638B79] - [07/11/2007 08:03:18] - |A| - (.© Microsoft Corporation. Reservados todos los derechos. - Archivo DLL de recursos del contenedor de la interfaz de usuario.) - [96272] - (9.0.21022.8) - C:\install.res.3082.dll [21/10/2014 13:00:58] - |D| - [268440] - C:\Intel [MD5.9CD1C6084ED69097B30E40DC3CEF3EDF] - [30/10/2017 12:15:57] - |A| - (.-.) - [200] - (0.0.0.0) - C:\LaunchURL.txt [17/09/2017 12:39:15] - |D| - [563849578] - C:\MinGW [30/11/2014 18:21:20] - |RHD| - [529670008] - C:\MSOCache [08/11/2014 00:04:35] - |D| - [2590] - C:\OEMSettings [29/07/2017 15:23:59] - |HD| - [333293] - C:\OneDriveTemp [MD5.D41D8CD98F00B204E9800998ECF8427E] - [21/10/2014 12:36:41] - |ASH| - (.-.) - [5368709120] - (0.0.0.0) - C:\pagefile.sys [15/09/2018 09:33:50] - |D| - [0] - C:\PerfLogs [04/07/2015 14:36:07] - |D| - [123465554] - C:\Pre_Scan [MD5.F6EF596DE9D66D36055F54F9C23A8EF6] - [04/07/2015 14:36:57] - |A| - (.-.) - [15206] - (0.0.0.0) - C:\Pre_Scan.txt [15/09/2018 09:33:50] - |RD| - [47609658279] - C:\Program Files [15/09/2018 09:33:50] - |RD| - [536905594110] - C:\Program Files (x86) [15/09/2018 09:33:50] - |HD| - [12488463370] - C:\ProgramData [30/06/2015 10:05:16] - |AD| - [127928386] - C:\Python27 [04/10/2019 13:38:46] - |D| - [837087] - C:\QuickDiag [MD5.C570DF778E20036021DE5CD6F54535FF] - [07/10/2019 11:57:15] - |A| - (.-.) - [332001] - (0.0.0.0) - C:\QuickDiag.txt [MD5.44A6989773E6D103AB91286CD3404074] - [04/10/2019 18:08:48] - |RAST| - (.-.) - [779627] - (0.0.0.0) - C:\QuickDiag_04_10_2019_18_08_48.txt [MD5.A555EFC181ED6DF5B739A75A07BA7F48] - [07/10/2019 11:03:43] - |RAST| - (.-.) - [730780] - (0.0.0.0) - C:\QuickDiag_07_10_2019_11_03_43.txt [21/10/2014 12:43:00] - |SHD| - [251084205] - C:\Recovery [05/08/2016 21:40:20] - |D| - [18551266356] - C:\Riot Games [24/12/2014 15:24:35] - |AD| - [767551685] - C:\RomStation [03/07/2019 01:23:15] - |D| - [274990663] - C:\SiMPLEX.Release.Name [03/03/2015 12:30:14] - |D| - [92540318] - C:\SmartDraw CI [28/07/2015 17:26:07] - |D| - [17622292] - C:\SONG [21/10/2014 13:01:59] - |HD| - [258] - C:\SuperChargerProfile [MD5.D41D8CD98F00B204E9800998ECF8427E] - [22/10/2014 08:36:39] - |ASH| - (.-.) - [268435456] - (0.0.0.0) - C:\swapfile.sys [21/10/2014 12:36:41] - |SHD| - [9217115836] - C:\System Volume Information [29/07/2015 16:28:09] - |D| - [887124122] - C:\TheKlub17 [09/11/2018 21:08:38] - |D| - [0] - C:\TL [03/04/2016 22:45:37] - |D| - [471395601] - C:\Undertale [15/09/2018 08:09:26] - |RD| - [113128669753] - C:\Users [MD5.06FBA95313F26E300917C6CEA4480890] - [16/01/2008 12:48:06] - |A| - (.-.) - [5686] - (0.0.0.0) - C:\vcredist.bmp [MD5.E10F2F6E6379E9185F71AEC1421F37B4] - [07/11/2007 08:09:22] - |A| - (.-.) - [1442522] - (0.0.0.0) - C:\VC_RED.cab [MD5.E0951D3CB1038EB2D2B2B2F336E1AB32] - [07/11/2007 08:12:28] - |A| - (.-.) - [232960] - (0.0.0.0) - C:\VC_RED.MSI [15/09/2018 08:09:26] - |D| - [37759835741] - C:\Windows ---------- | C:\WINDOWS [15/09/2018 09:33:50] - |D| - [802] - C:\WINDOWS\addins [15/09/2018 09:33:50] - |D| - [16796663] - C:\WINDOWS\appcompat [15/09/2018 09:33:50] - |D| - [8452234] - C:\WINDOWS\apppatch [15/09/2018 09:33:50] - |D| - [0] - C:\WINDOWS\AppReadiness [15/09/2018 09:33:50] - |RD| - [1095905040] - C:\WINDOWS\assembly [MD5.EBCFA11C16A9A073E797622BAA74D76F] - [21/07/2014 22:04:38] - |A| - (.-.) - [47887] - (0.0.0.0) - C:\WINDOWS\atiogl.xml [MD5.D41D8CD98F00B204E9800998ECF8427E] - [27/12/2015 12:39:27] - |A| - (.-.) - [0] - (0.0.0.0) - C:\WINDOWS\ativpsrm.bin [15/09/2018 09:33:50] - |D| - [740161] - C:\WINDOWS\bcastdvr [MD5.49D0AD393AE0B1EE7F3A3DD81B54BFBF] - [15/09/2018 09:28:22] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Utilitaire de service de fichier de démarrage.) - [78848] - (10.0.17763.1) - C:\WINDOWS\bfsvc.exe [15/09/2018 18:39:06] - |SHD| - [579059] - C:\WINDOWS\BitLockerDiscoveryVolumeContents [15/09/2018 09:33:50] - |D| - [39075417] - C:\WINDOWS\Boot [MD5.660C446490F27734D4C753F5BBA0BEDD] - [15/04/2019 17:55:40] - |AS| - (.-.) - [67584] - (0.0.0.0) - C:\WINDOWS\bootstat.dat [15/09/2018 09:33:50] - |D| - [2449912] - C:\WINDOWS\Branding [15/09/2018 09:23:35] - |D| - [0] - C:\WINDOWS\CbsTemp [15/09/2018 09:33:50] - |D| - [56488186] - C:\WINDOWS\Containers [22/10/2014 08:40:36] - |D| - [0] - C:\WINDOWS\CSC [15/09/2018 09:33:50] - |D| - [11482410] - C:\WINDOWS\Cursors [15/09/2018 09:33:50] - |D| - [5530780] - C:\WINDOWS\debug [MD5.99F5D5BBD351694638DF3C0CC4A919A3] - [15/04/2019 19:23:02] - |A| - (.-.) - [7623] - (0.0.0.0) - C:\WINDOWS\diagerr.xml [15/09/2018 09:33:50] - |D| - [4243349] - C:\WINDOWS\diagnostics [MD5.99F5D5BBD351694638DF3C0CC4A919A3] - [15/04/2019 19:23:02] - |A| - (.-.) - [7623] - (0.0.0.0) - C:\WINDOWS\diagwrn.xml [15/09/2018 18:37:15] - |D| - [0] - C:\WINDOWS\DigitalLocker [MD5.D7C002545ED121945FC300A460A3ED86] - [05/09/2017 16:44:45] - |A| - (.-.) - [165] - (0.0.0.0) - C:\WINDOWS\disney.ini [MD5.E622D09B8087680D7A6FAAA1652F605F] - [05/09/2017 16:44:43] - |A| - (.-.) - [214] - (0.0.0.0) - C:\WINDOWS\disneysy.ini [08/11/2014 00:04:12] - |D| - [19465802] - C:\WINDOWS\Downloaded Installations [15/09/2018 09:33:50] - |SD| - [65] - C:\WINDOWS\Downloaded Program Files [15/09/2018 09:33:50] - |HD| - [67520] - C:\WINDOWS\ELAMBKUP [15/09/2018 18:37:15] - |D| - [0] - C:\WINDOWS\en-US [MD5.E116F984B2EA81051286F4CECDB2B750] - [23/08/2019 03:45:32] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Explorateur Windows.) - [4351656] - (10.0.17763.652) - C:\WINDOWS\explorer.exe [15/09/2018 09:33:50] - |RSD| - [532369388] - C:\WINDOWS\Fonts [15/09/2018 18:37:15] - |D| - [110080] - C:\WINDOWS\fr-FR [15/09/2018 09:33:50] - |D| - [0] - C:\WINDOWS\GameBarPresenceWriter [15/09/2018 09:33:50] - |D| - [71314024] - C:\WINDOWS\Globalization [15/09/2018 09:33:50] - |D| - [1265149] - C:\WINDOWS\Help [MD5.860149040BEF4711189158FE4505E6C6] - [15/09/2018 09:29:17] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Aide et support Microsoft.) - [1065472] - (10.0.17763.1) - C:\WINDOWS\HelpPane.exe [MD5.1CECEE8D02A8E9B19D3A1A65C7A2B249] - [15/09/2018 09:29:18] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Exécutable de l’aide HTML Microsoft®.) - [18432] - (10.0.17763.1) - C:\WINDOWS\hh.exe [15/09/2018 09:33:50] - |D| - [29869] - C:\WINDOWS\IdentityCRL [15/09/2018 09:33:50] - |D| - [92643566] - C:\WINDOWS\IME [15/09/2018 09:33:50] - |RD| - [8775009] - C:\WINDOWS\ImmersiveControlPanel [15/09/2018 09:31:55] - |D| - [72991735] - C:\WINDOWS\INF [12/04/2018 01:38:21] - |D| - [0] - C:\WINDOWS\InfusedApps [15/09/2018 09:33:50] - |D| - [38126462] - C:\WINDOWS\InputMethod [15/09/2018 09:33:50] - |SHDC| - [5168969497] - C:\WINDOWS\Installer [MD5.68997DCC017B8F0A1675452476A03300] - [05/09/2017 15:50:36] - |A| - (.Copyright© 1990-1997 InstallShield Software Corporation Phone : (847) 240-9111 - InstallShield® unInstaller.) - [305664] - (5.10.146.0) - C:\WINDOWS\IsUn040c.exe [28/06/2015 10:13:45] - |D| - [0] - C:\WINDOWS\ja-JP [15/09/2018 09:33:50] - |D| - [94163] - C:\WINDOWS\L2Schemas [15/09/2018 09:33:50] - |HD| - [0] - C:\WINDOWS\LanguageOverlayCache [15/09/2018 09:33:50] - |D| - [0] - C:\WINDOWS\LiveKernelReports [15/09/2018 08:09:30] - |D| - [30392709] - C:\WINDOWS\Logs [15/09/2018 09:33:50] - |RSD| - [20486563] - C:\WINDOWS\media [22/08/2013 17:36:31] - |D| - [1619968] - C:\WINDOWS\MediaViewer [MD5.23AF90D2355D8C83AA4567EF1763B467] - [15/09/2018 09:28:57] - |A| - (.-.) - [43131] - (0.0.0.0) - C:\WINDOWS\mib.bin [15/09/2018 09:33:50] - |RD| - [844040515] - C:\WINDOWS\Microsoft.NET [15/09/2018 09:33:50] - |D| - [3135] - C:\WINDOWS\Migration [15/09/2018 09:33:50] - |D| - [0] - C:\WINDOWS\ModemLogs [24/10/2014 13:30:12] - |HD| - [0] - C:\WINDOWS\msdownld.tmp [MD5.0E61079D3283687D2E279272966AE99D] - [04/05/2019 00:57:50] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Bloc-notes.) - [254464] - (10.0.17763.475) - C:\WINDOWS\notepad.exe [15/09/2018 18:38:23] - |D| - [2104608] - C:\WINDOWS\OCR [15/09/2018 09:33:50] - |RD| - [65] - C:\WINDOWS\Offline Web Pages [15/04/2019 15:45:06] - |DC| - [292225195] - C:\WINDOWS\Panther [MD5.6EC517E866E476401755281837295579] - [05/09/2017 16:26:57] - |A| - (.-.) - [185344] - (6.3.0.0) - C:\WINDOWS\patchw32.dll [15/09/2018 09:33:50] - |D| - [515398] - C:\WINDOWS\Performance [MD5.E8B9E77743272A8B480DB9CDB20B4A41] - [13/12/2017 12:09:11] - |A| - (.-.) - [430294] - (0.0.0.0) - C:\WINDOWS\PFRO.log [15/09/2018 09:33:50] - |D| - [1136442] - C:\WINDOWS\PLA [15/09/2018 09:33:50] - |D| - [7333634] - C:\WINDOWS\PolicyDefinitions [MD5.D41D8CD98F00B204E9800998ECF8427E] - [07/09/2017 13:50:48] - |A| - (.-.) - [0] - (0.0.0.0) - C:\WINDOWS\PowerReg.dat [15/04/2019 18:47:26] - |D| - [25201754] - C:\WINDOWS\Prefetch [15/09/2018 09:33:50] - |RD| - [1910255] - C:\WINDOWS\PrintDialog [MD5.AD5867D2A8665FFB20B0651AFC12114B] - [15/09/2018 18:39:49] - |A| - (.-.) - [34925] - (0.0.0.0) - C:\WINDOWS\Professional.xml [MD5.09394999ADB19901C665454EE964B13C] - [21/03/2018 20:37:31] - |A| - (.-.) - [36] - (0.0.0.0) - C:\WINDOWS\progress.ini [15/09/2018 09:33:50] - |D| - [5680954] - C:\WINDOWS\Provisioning [MD5.A3668018735B59050AD123A5A8CDC184] - [15/04/2019 17:49:01] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Éditeur du Registre.) - [358400] - (10.0.17763.168) - C:\WINDOWS\regedit.exe [15/09/2018 09:33:50] - |D| - [1095288] - C:\WINDOWS\Registration [15/09/2018 18:39:06] - |D| - [0] - C:\WINDOWS\RemotePackages [15/09/2018 09:33:50] - |D| - [9347704] - C:\WINDOWS\rescache [15/09/2018 09:33:50] - |D| - [3919454] - C:\WINDOWS\Resources [MD5.2F887699ECB55E01D486700FB67E8805] - [19/12/2016 13:38:41] - |A| - (.Copyright (C) 2017 Realtek Semiconductor Corp. - RtlExUpd DLL for setup utility function.) - [2856800] - (1.0.7.2) - C:\WINDOWS\RtlExUpd.dll [15/09/2018 09:33:50] - |D| - [0] - C:\WINDOWS\SchCache [15/09/2018 09:33:50] - |D| - [189072] - C:\WINDOWS\schemas [15/09/2018 09:33:50] - |D| - [4365273] - C:\WINDOWS\security [15/04/2019 17:54:36] - |D| - [84834782] - C:\WINDOWS\ServiceProfiles [15/09/2018 09:33:50] - |D| - [4096] - C:\WINDOWS\ServiceState [15/09/2018 08:09:26] - |D| - [654872560] - C:\WINDOWS\servicing [15/09/2018 09:36:53] - |D| - [42] - C:\WINDOWS\Setup [MD5.FF135D01D312D403DA9DE9C6192548A1] - [04/10/2019 11:44:26] - |A| - (.-.) - [13284] - (0.0.0.0) - C:\WINDOWS\setupact.log [MD5.D41D8CD98F00B204E9800998ECF8427E] - [04/10/2019 11:44:26] - |A| - (.-.) - [0] - (0.0.0.0) - C:\WINDOWS\setuperr.log [15/09/2018 09:33:50] - |D| - [6752256] - C:\WINDOWS\ShellComponents [15/09/2018 09:33:50] - |D| - [52904960] - C:\WINDOWS\ShellExperiences [30/10/2015 21:03:13] - |D| - [97307] - C:\WINDOWS\ShellNew [15/09/2018 09:33:50] - |D| - [6828144] - C:\WINDOWS\SKB [22/10/2014 08:41:00] - |D| - [2183023605] - C:\WINDOWS\SoftwareDistribution [15/09/2018 09:33:50] - |D| - [86038209] - C:\WINDOWS\Speech [15/09/2018 09:33:50] - |D| - [63949381] - C:\WINDOWS\Speech_OneCore [MD5.E2715D34A68C5A320CFBECA93A94CFE4] - [09/07/2019 20:37:09] - |A| - (.© Microsoft Corporation. - Print driver host for applications.) - [132608] - (10.0.17763.615) - C:\WINDOWS\splwow64.exe [15/09/2018 09:33:50] - |D| - [31039] - C:\WINDOWS\System [MD5.286A9EDB379DC3423A528B0864A0F111] - [22/08/2013 15:25:43] - |A| - (.-.) - [219] - (0.0.0.0) - C:\WINDOWS\system.ini [15/09/2018 08:09:26] - |D| - [12911710317] - C:\WINDOWS\System32 [15/09/2018 09:33:50] - |D| - [205956872] - C:\WINDOWS\SystemApps [15/09/2018 09:33:51] - |D| - [26532995] - C:\WINDOWS\SystemResources [15/09/2018 08:09:31] - |D| - [1416056639] - C:\WINDOWS\SysWOW64 [15/09/2018 09:33:51] - |D| - [0] - C:\WINDOWS\TAPI [22/08/2013 17:36:30] - |D| - [464] - C:\WINDOWS\Tasks [15/09/2018 09:33:51] - |D| - [6387] - C:\WINDOWS\Temp [15/09/2018 09:33:51] - |D| - [14425088] - C:\WINDOWS\TextInput [22/08/2013 17:36:30] - |RD| - [0] - C:\WINDOWS\ToastData [15/09/2018 09:33:51] - |D| - [0] - C:\WINDOWS\tracing [15/09/2018 09:33:51] - |D| - [58884546] - C:\WINDOWS\twain_32 [MD5.4B8ED4EF819DC87A2DC108EF60504FE9] - [15/09/2018 09:29:28] - |A| - (.- Gestionnaire de sources Twain_32 (Image Acquisition Interface).) - [64512] - (1.7.1.3) - C:\WINDOWS\twain_32.dll [04/09/2018 09:50:31] - |D| - [6780876] - C:\WINDOWS\UpdateAssistant [14/06/2017 20:05:09] - |SD| - [0] - C:\WINDOWS\UpdateAssistantV2 [11/06/2015 22:45:35] - |D| - [0] - C:\WINDOWS\vmguest [22/08/2013 17:36:30] - |D| - [0] - C:\WINDOWS\vpnplugins [15/09/2018 09:33:51] - |D| - [12420] - C:\WINDOWS\Vss [15/09/2018 08:09:29] - |D| - [28882] - C:\WINDOWS\WaaS [15/09/2018 09:33:51] - |D| - [15991129] - C:\WINDOWS\Web [MD5.DAA6AAD525D12F8985695B882301336F] - [22/08/2013 15:25:43] - |A| - (.-.) - [167] - (0.0.0.0) - C:\WINDOWS\win.ini [MD5.C844CA459F3B209329984772269B6E56] - [15/09/2018 09:28:58] - |RAH| - (.-.) - [670] - (0.0.0.0) - C:\WINDOWS\WindowsShell.Manifest [MD5.2CC83D93DD1DDE691158CF5E9882420B] - [04/10/2019 11:44:31] - |A| - (.-.) - [276] - (0.0.0.0) - C:\WINDOWS\WindowsUpdate.log [MD5.351FDCE5B7CDE5009C768FFDA64B5E57] - [15/09/2018 09:29:27] - |A| - (.© Microsoft Corporation. Tous droits réservés. - Relais Windows Winhlp32.) - [11776] - (10.0.17763.1) - C:\WINDOWS\winhlp32.exe [15/09/2018 08:09:26] - |D| - [11407807595] - C:\WINDOWS\WinSxS [MD5.E7E4D8D7340DA6934B9EA81CBB21374C] - [15/09/2018 09:38:26] - |A| - (.-.) - [316640] - (0.0.0.0) - C:\WINDOWS\WMSysPr9.prx [MD5.10F2BC4209233AB34BDA602967D0F798] - [15/09/2018 09:29:24] - |A| - (.© Microsoft Corporation. - Windows Write.) - [11264] - (10.0.17763.1) - C:\WINDOWS\write.exe [07/11/2014 23:28:20] - |D| - [22359942] - C:\WINDOWS\{72E4A482-6DE7-406D-A6CD-59EF1123B0C9} [25/10/2014 23:38:40] - |D| - [23744902] - C:\WINDOWS\{FF6654AC-6C49-4BA9-B6CC-868D13DE0321} ---------- | C:\WINDOWS\System32\GroupPolicy [MD5.461C6619194039BB9FE6BB89A9C74CD3] - [28/10/2014 20:41:42] - |A| - (.-.) - [165] - (0.0.0.0) - C:\WINDOWS\System32\GroupPolicy\gpt.ini [28/10/2014 20:41:42] - |D| - [841] - C:\WINDOWS\System32\GroupPolicy\Machine [28/10/2014 20:41:42] - |D| - [0] - C:\WINDOWS\System32\GroupPolicy\User ---------- | Systemroot\System ---------- | Systemroot\Installer (Microsoft Files Whitelisted) [28/07/2015 02:22:08] - C:\WINDOWS\Installer\109c3a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:14:14] - C:\WINDOWS\Installer\109c3e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:14:28] - C:\WINDOWS\Installer\109c42.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:14:42] - C:\WINDOWS\Installer\109c46.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:14:56] - C:\WINDOWS\Installer\109c4a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:15:12] - C:\WINDOWS\Installer\109c4e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:15:26] - C:\WINDOWS\Installer\109c52.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:15:38] - C:\WINDOWS\Installer\109c56.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:15:52] - C:\WINDOWS\Installer\109c5a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:16:06] - C:\WINDOWS\Installer\109c5e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:16:20] - C:\WINDOWS\Installer\109c62.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:16:34] - C:\WINDOWS\Installer\109c66.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:16:46] - C:\WINDOWS\Installer\109c6a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:17:00] - C:\WINDOWS\Installer\109c6e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:17:12] - C:\WINDOWS\Installer\109c72.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:17:26] - C:\WINDOWS\Installer\109c76.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:17:38] - C:\WINDOWS\Installer\109c7a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:17:52] - C:\WINDOWS\Installer\109c7e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:18:06] - C:\WINDOWS\Installer\109c82.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:18:18] - C:\WINDOWS\Installer\109c86.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:18:32] - C:\WINDOWS\Installer\109c8a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:18:46] - C:\WINDOWS\Installer\109c8e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:19:02] - C:\WINDOWS\Installer\109c92.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/07/2015 02:19:20] - C:\WINDOWS\Installer\109c96.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [10/07/2015 22:30:10] - C:\WINDOWS\Installer\10bc737.msi : (Mumble 1.2.10 - Thorvald Natvig) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [12/08/2015 15:58:54] - C:\WINDOWS\Installer\111a78c.msi : (puush installer - Dean Herbert) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/06/2017 17:30:10] - C:\WINDOWS\Installer\12d3c2b.msi : (Blank Project Template - Samsung Electronics Co., Ltd.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [16/03/2016 17:26:55] - C:\WINDOWS\Installer\13eb0e50.msi : (Minecraft - Mojang) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/12/2018 00:24:06] - C:\WINDOWS\Installer\14b406e3.msi : (MTG Arena - Wizards of the Coast) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [17/07/2015 14:46:08] - C:\WINDOWS\Installer\157cd2.msi : (Logitech Gaming Software - Logitech Inc) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [11/06/2009 12:49:16] - C:\WINDOWS\Installer\17c82a8.msi : (Blank Project Template - Aspyr) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [04/06/2016 15:57:06] - C:\WINDOWS\Installer\17c82ae.msi : (Blank Project Template - Macrovision Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [04/08/2015 21:36:08] - C:\WINDOWS\Installer\199ae6aa.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [22/12/2018 20:04:26] - C:\WINDOWS\Installer\1c9fffb8.msi : (4K Video Downloader 4.4 Installer - Open Media LLC) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [25/06/2019 03:21:53] - C:\WINDOWS\Installer\1cd615d9.msi : (Image to PDF Converter Free - PDFArea Software) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [06/08/2016 17:31:32] - C:\WINDOWS\Installer\1d1979.msi : (WN111 - NETGEAR) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [05/02/2018 17:00:00] - C:\WINDOWS\Installer\1f8954be.msi : (Ableton Live 10 Suite - Ableton) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [18/06/2018 09:41:40] - C:\WINDOWS\Installer\1fb4c9.msi : (Branding - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:41:16] - C:\WINDOWS\Installer\1fb4ec.msi : (AMD Catalyst Install Manager Installer (64 bit) - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:45:04] - C:\WINDOWS\Installer\1fb523.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [24/08/2017 11:02:30] - C:\WINDOWS\Installer\23c8edae.msi : (Branding - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [13/08/2014 11:16:04] - C:\WINDOWS\Installer\2762d7be.msi : (OpenOffice 4.1.1 - OpenOffice) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [06/05/2014 10:20:30] - C:\WINDOWS\Installer\281fa.msi : (Intel(R) Chipset Device Software - Intel Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [03/04/2014 16:50:48] - C:\WINDOWS\Installer\281fe.msi : (Intel(R) ME UninstallLegacy - Intel Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [03/04/2014 16:51:44] - C:\WINDOWS\Installer\28202.msi : (Intel(R) Management Engine Components - Intel Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [03/04/2014 16:50:46] - C:\WINDOWS\Installer\28206.msi : (Intel(R) Management Engine Components - Intel Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [03/04/2014 16:52:14] - C:\WINDOWS\Installer\28211.msi : (Intel(R) Management Engine Components - Intel Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [03/04/2014 16:48:38] - C:\WINDOWS\Installer\28215.msi : (Intel(R) Trusted Connect Service Client - Intel Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [25/03/2014 10:39:12] - C:\WINDOWS\Installer\2821a.msi : (Intel(R) Update Manager - Intel Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [05/12/2014 09:33:53] - C:\WINDOWS\Installer\28d4690c.msi : (Install/UnInstall PhysX Driver + Engines: 2.7.1/3/4/5/6; 2.8.0/1/3 - NVIDIA Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/07/2016 02:47:34] - C:\WINDOWS\Installer\2c9a5e9.msi : (Plantronics Hub Software - Plantronics, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [27/04/2017 17:12:20] - C:\WINDOWS\Installer\2d1718aa.msi : (Path of Exile Windows Installer package - Grinding Gear Games) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/11/2014 23:53:51] - C:\WINDOWS\Installer\2e0b7.msi : (Blank Project Template - InstallShield Software Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [12/09/2016 13:58:34] - C:\WINDOWS\Installer\2f59f17f.msi : (Application Profiles - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [14/07/2014 22:47:56] - C:\WINDOWS\Installer\30f3aa.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [22/10/2014 09:38:25] - C:\WINDOWS\Installer\30f422.msi : (System Requirements Lab for Intel - Husdawg, LLC) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [15/10/2016 13:30:54] - C:\WINDOWS\Installer\32df610d.msi : (YGOPro DevPro Launcher - DevPro, LLC) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [03/09/2019 11:22:32] - C:\WINDOWS\Installer\334db511.msi : (Emily - Razer Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [14/11/2014 00:33:20] - C:\WINDOWS\Installer\3af24a9.msi : (Google Update Helper - Google Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [14/12/2017 12:55:00] - C:\WINDOWS\Installer\47c8e6.msi : (Hardware Detection DriversCloud.com - Cybelsoft) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [30/06/2015 10:03:11] - C:\WINDOWS\Installer\4a496b6b.msi : (Python 2.7.8 - Python Software Foundation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [11/10/2018 17:50:24] - C:\WINDOWS\Installer\4b9e7d8.msi : (Adobe AIR Installer - Adobe Systems Incorporated) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [18/05/2015 22:51:39] - C:\WINDOWS\Installer\4dc6e6.msi : (TMSViewer - UNKNOWN) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [25/02/2015 17:36:28] - C:\WINDOWS\Installer\59828.msi : (Adblock Plus for IE - Eyeo GmbH) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [30/06/2015 10:15:58] - C:\WINDOWS\Installer\6170e.msi : (Python 2.7.8 (64-bit) - Python Software Foundation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [18/08/2017 14:12:14] - C:\WINDOWS\Installer\61e326e8.msi : (Branding - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [12/12/2014 08:17:49] - C:\WINDOWS\Installer\78f7d7.msi : (??????? - ILLUSION) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [16/07/2015 21:43:24] - C:\WINDOWS\Installer\7c8de.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [26/07/2011 20:36:38] - C:\WINDOWS\Installer\7feefc93.msi : ( - DivX, Inc) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 20:06:24] - C:\WINDOWS\Installer\811c53cd.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [23/10/2014 23:48:33] - C:\WINDOWS\Installer\825d267.msi : (7-Zip (x64 edition) Package - Igor Pavlov) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [08/11/2014 00:04:12] - C:\WINDOWS\Installer\89394.msi : (NETGEAR WG111v3 wireless USB 2.0 adapter - NETGEAR) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [16/07/2014 22:20:18] - C:\WINDOWS\Installer\8ff15c2.msi : (Vegas Pro 13.0 (64-bit) - Sony) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [12/02/2016 15:29:16] - C:\WINDOWS\Installer\a28e833.msi : (Intel(R) Rapid Storage Technology - Intel Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/05/2017 10:26:52] - C:\WINDOWS\Installer\a468334.msi : (Skype - Skype Technologies S.A.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [11/11/2014 10:49:56] - C:\WINDOWS\Installer\b250a.msi : (Branding - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:50:26] - C:\WINDOWS\Installer\b250e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:45:16] - C:\WINDOWS\Installer\b2512.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:45:26] - C:\WINDOWS\Installer\b2516.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:45:36] - C:\WINDOWS\Installer\b251a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:45:44] - C:\WINDOWS\Installer\b251e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:45:52] - C:\WINDOWS\Installer\b2522.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:46:00] - C:\WINDOWS\Installer\b2526.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:46:08] - C:\WINDOWS\Installer\b252a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:46:16] - C:\WINDOWS\Installer\b252e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:46:24] - C:\WINDOWS\Installer\b2532.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:46:32] - C:\WINDOWS\Installer\b2536.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:46:42] - C:\WINDOWS\Installer\b253a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:46:50] - C:\WINDOWS\Installer\b253e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:47:00] - C:\WINDOWS\Installer\b2542.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:47:08] - C:\WINDOWS\Installer\b2546.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:47:20] - C:\WINDOWS\Installer\b254a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:47:28] - C:\WINDOWS\Installer\b254e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:47:38] - C:\WINDOWS\Installer\b2552.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:47:48] - C:\WINDOWS\Installer\b2556.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:47:58] - C:\WINDOWS\Installer\b255a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:48:06] - C:\WINDOWS\Installer\b255e.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:48:16] - C:\WINDOWS\Installer\b2562.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:48:24] - C:\WINDOWS\Installer\b2566.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2015 21:48:36] - C:\WINDOWS\Installer\b256a.msi : (Catalyst Control Center - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [11/10/2017 15:49:00] - C:\WINDOWS\Installer\b3318f.msi : (Epic Games Launcher - Epic Games, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [19/11/2015 10:56:58] - C:\WINDOWS\Installer\b33193.msi : (Epic Games Launcher Prerequisites (x64) - Epic Games, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [07/08/2017 15:43:29] - C:\WINDOWS\Installer\b581096.msi : (Oracle VM VirtualBox 5.1.26 installation package - Oracle Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [06/11/2018 03:58:09] - C:\WINDOWS\Installer\b8be348.msi : (Hextech Repair Tool Installer - Riot Games, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [15/05/2019 05:20:32] - C:\WINDOWS\Installer\b92f635.msi : (Google Update Helper - Google LLC) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [26/12/2014 21:13:24] - C:\WINDOWS\Installer\c291e2.msi : (Classic Shell - IvoSoft) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [16/01/2017 21:15:46] - C:\WINDOWS\Installer\c65cb8e3.msi : (AMD Problem Report Wizard (64 bit) - Advanced Micro Devices, Inc.) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [04/12/2014 18:57:43] - C:\WINDOWS\Installer\c7d897c.msi : (TeeBoard - UNKNOWN) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [12/03/2015 21:37:00] - C:\WINDOWS\Installer\e51126f.msi : ( -) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [25/08/2015 01:00:00] - C:\WINDOWS\Installer\e51127c.msi : ( -) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [17/06/2015 18:33:44] - C:\WINDOWS\Installer\e599d62.msi : (EpsonNet Print - SEIKO EPSON Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [28/08/2015 13:28:54] - C:\WINDOWS\Installer\e599d66.msi : (Epson Event Manager - Seiko Epson Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [17/07/2019 13:51:55] - C:\WINDOWS\Installer\fec0502.msi : (Java SE Runtime Environment 8 Update 221 - Oracle Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [17/07/2019 13:51:49] - C:\WINDOWS\Installer\fec0506.msi : (Java SE Runtime Environment 8 Update 221 - Oracle Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [17/07/2019 13:51:49] - C:\WINDOWS\Installer\fec050f.msi : (Java Auto Updater - Oracle Corporation) [Offsets ok ! : D0CF11E0A1B11AE10000000000000000] [15/05/2015 17:12:56] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\11804141.msp [18/05/2015 14:56:08] - [1118208] - (.().-. - ()) - C:\WINDOWS\Installer\11804149.msp [01/07/2016 08:32:56] - [4341760] - (.().-. - ()) - C:\WINDOWS\Installer\122fc6f.msp [01/07/2016 08:32:08] - [11137024] - (.().-. - ()) - C:\WINDOWS\Installer\122fc83.msp [15/06/2016 23:27:32] - [10461184] - (.().-. - ()) - C:\WINDOWS\Installer\122fc96.msp [16/06/2016 00:18:16] - [9699328] - (.().-. - ()) - C:\WINDOWS\Installer\122fca9.msp [15/06/2016 23:57:14] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\122fcbc.msp [28/06/2011 22:27:28] - [4028928] - (.().-. - ()) - C:\WINDOWS\Installer\148b7b54.msp [28/06/2011 22:21:32] - [4637184] - (.().-. - ()) - C:\WINDOWS\Installer\148b9680.msp [10/02/2016 12:40:10] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\14d88210.msp [13/07/2016 01:07:32] - [13078528] - (.().-. - ()) - C:\WINDOWS\Installer\14dcec12.msp [13/07/2016 01:04:54] - [1126400] - (.().-. - ()) - C:\WINDOWS\Installer\14dcec19.msp [29/06/2016 03:24:56] - [9805824] - (.().-. - ()) - C:\WINDOWS\Installer\14dcec2c.msp [21/07/2016 05:24:44] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\14dcec3f.msp [21/07/2016 05:15:16] - [16433152] - (.().-. - ()) - C:\WINDOWS\Installer\14dcec52.msp [21/07/2016 05:18:58] - [11169792] - (.().-. - ()) - C:\WINDOWS\Installer\14e5cd05.msp [18/03/2016 21:07:16] - [4251648] - (.().-. - ()) - C:\WINDOWS\Installer\152a1608.msp [18/03/2016 21:07:26] - [9699328] - (.().-. - ()) - C:\WINDOWS\Installer\152a161b.msp [18/03/2016 21:07:02] - [10059776] - (.().-. - ()) - C:\WINDOWS\Installer\152a162f.msp [24/02/2016 08:14:42] - [9805824] - (.().-. - ()) - C:\WINDOWS\Installer\152a1642.msp [18/03/2016 21:06:44] - [10059776] - (.().-. - ()) - C:\WINDOWS\Installer\152a1655.msp [11/04/2017 23:27:48] - [11177984] - (.().-. - ()) - C:\WINDOWS\Installer\16169b5a.msp [11/04/2017 23:25:46] - [9420800] - (.().-. - ()) - C:\WINDOWS\Installer\16169b6d.msp [11/04/2017 23:25:26] - [16441344] - (.().-. - ()) - C:\WINDOWS\Installer\16169b80.msp [11/04/2017 23:25:56] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\16169b93.msp [18/03/2016 21:06:48] - [4988928] - (.().-. - ()) - C:\WINDOWS\Installer\16a37e8d.msp [10/02/2016 12:45:24] - [13086720] - (.().-. - ()) - C:\WINDOWS\Installer\16e9e15c.msp [10/02/2016 12:39:10] - [3665920] - (.().-. - ()) - C:\WINDOWS\Installer\16e9e16f.msp [10/02/2016 12:39:52] - [2584576] - (.().-. - ()) - C:\WINDOWS\Installer\16e9e182.msp [18/02/2016 08:40:12] - [11165696] - (.().-. - ()) - C:\WINDOWS\Installer\16e9e196.msp [18/02/2016 08:40:00] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\16e9e1a9.msp [12/08/2015 17:46:45] - [16433152] - (.().-. - ()) - C:\WINDOWS\Installer\1745aa3.msp [12/08/2015 17:47:05] - [8818688] - (.().-. - ()) - C:\WINDOWS\Installer\1745ab6.msp [12/08/2015 17:47:16] - [9801728] - (.().-. - ()) - C:\WINDOWS\Installer\1745ac9.msp [12/08/2015 17:47:52] - [9019392] - (.().-. - ()) - C:\WINDOWS\Installer\1745adc.msp [12/08/2015 17:47:58] - [4939776] - (.().-. - ()) - C:\WINDOWS\Installer\1745aef.msp [12/08/2015 17:48:04] - [4333568] - (.().-. - ()) - C:\WINDOWS\Installer\1745b02.msp [12/08/2015 17:48:10] - [10444800] - (.().-. - ()) - C:\WINDOWS\Installer\1745b15.msp [12/08/2015 17:48:17] - [5079040] - (.().-. - ()) - C:\WINDOWS\Installer\1745b28.msp [12/08/2015 17:48:23] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\1745b3b.msp [12/08/2015 17:52:17] - [11120640] - (.().-. - ()) - C:\WINDOWS\Installer\1745b4f.msp [12/08/2015 17:52:27] - [53332992] - (.().-. - ()) - C:\WINDOWS\Installer\1745b5d.msp [12/08/2015 17:53:04] - [10031104] - (.().-. - ()) - C:\WINDOWS\Installer\1745b63.msp [20/07/2017 12:43:32] - [13115392] - (.().-. - ()) - C:\WINDOWS\Installer\19c04e86.msp [17/05/2016 17:56:42] - [2978304] - (.().-. - ()) - C:\WINDOWS\Installer\1b6adb9b.msp [19/05/2016 04:10:58] - [4988928] - (.().-. - ()) - C:\WINDOWS\Installer\1b6adbad.msp [19/05/2016 04:14:28] - [4030464] - (.().-. - ()) - C:\WINDOWS\Installer\1b6adbc1.msp [19/05/2016 04:10:16] - [10465280] - (.().-. - ()) - C:\WINDOWS\Installer\1b6adbd4.msp [19/05/2016 04:19:50] - [9699328] - (.().-. - ()) - C:\WINDOWS\Installer\1b6adbe7.msp [19/05/2016 04:19:22] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\1b6adbfa.msp [19/05/2016 04:18:12] - [10534912] - (.().-. - ()) - C:\WINDOWS\Installer\1b6adc0e.msp [18/02/2015 05:14:44] - [10448896] - (.().-. - ()) - C:\WINDOWS\Installer\1cc51e.msp [26/10/2017 15:21:46] - [5144576] - (.().-. - ()) - C:\WINDOWS\Installer\1dead53.msp [10/12/2015 11:23:51] - [10461184] - (.().-. - ()) - C:\WINDOWS\Installer\1e87da96.msp [10/12/2015 11:24:41] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\1e87daa9.msp [10/12/2015 11:25:14] - [11161600] - (.().-. - ()) - C:\WINDOWS\Installer\1e87dabd.msp [10/12/2015 11:25:22] - [16424960] - (.().-. - ()) - C:\WINDOWS\Installer\1e87dad0.msp [10/12/2015 11:33:11] - [8818688] - (.().-. - ()) - C:\WINDOWS\Installer\1e905c52.msp [10/12/2015 11:33:20] - [9715712] - (.().-. - ()) - C:\WINDOWS\Installer\1e905c65.msp [10/12/2015 11:33:31] - [53336064] - (.().-. - ()) - C:\WINDOWS\Installer\1e905c73.msp [10/12/2015 11:34:08] - [4333568] - (.().-. - ()) - C:\WINDOWS\Installer\1e905c85.msp [10/12/2015 11:34:15] - [9691136] - (.().-. - ()) - C:\WINDOWS\Installer\1e905c98.msp [29/10/2016 12:46:47] - [53345280] - (.().-. - ()) - C:\WINDOWS\Installer\202385f5.msp [23/09/2016 10:42:52] - [11177984] - (.().-. - ()) - C:\WINDOWS\Installer\202a1c61.msp [23/09/2016 10:42:50] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\202a1c74.msp [03/09/2016 21:43:22] - [9809920] - (.().-. - ()) - C:\WINDOWS\Installer\202a1c87.msp [23/06/2016 23:55:23] - [53339648] - (.().-. - ()) - C:\WINDOWS\Installer\21716380.msp [03/06/2017 20:26:12] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\24b7077.msp [03/06/2017 20:25:46] - [11177984] - (.().-. - ()) - C:\WINDOWS\Installer\24b708b.msp [14/09/2017 21:27:46] - [53350400] - (.().-. - ()) - C:\WINDOWS\Installer\24b7099.msp [10/12/2015 13:00:52] - [11157504] - (.().-. - ()) - C:\WINDOWS\Installer\2aefe77f.msp [10/12/2015 12:59:00] - [5300224] - (.().-. - ()) - C:\WINDOWS\Installer\2aefe792.msp [23/12/2015 19:00:14] - [10461184] - (.().-. - ()) - C:\WINDOWS\Installer\2aefe7a5.msp [10/12/2015 12:58:30] - [4968448] - (.().-. - ()) - C:\WINDOWS\Installer\2aefe7b8.msp [10/12/2015 12:57:20] - [16433152] - (.().-. - ()) - C:\WINDOWS\Installer\2aefe7cb.msp [13/01/2016 20:43:15] - [53338112] - (.().-. - ()) - C:\WINDOWS\Installer\2aefe7d9.msp [10/12/2015 12:57:36] - [24256512] - (.().-. - ()) - C:\WINDOWS\Installer\2aefe7f1.msp [23/12/2015 19:00:18] - [9687040] - (.().-. - ()) - C:\WINDOWS\Installer\2aefe804.msp [15/09/2011 19:39:56] - [15017984] - (.().-. - ()) - C:\WINDOWS\Installer\2bb44f3.msp [15/09/2011 19:40:24] - [33243648] - (.().-. - ()) - C:\WINDOWS\Installer\2bb4516.msp [15/09/2011 19:34:14] - [8499712] - (.().-. - ()) - C:\WINDOWS\Installer\2bb466a.msp [15/09/2011 19:35:04] - [1833984] - (.().-. - ()) - C:\WINDOWS\Installer\2bb4673.msp [15/09/2011 19:37:06] - [14140416] - (.().-. - ()) - C:\WINDOWS\Installer\2bb467d.msp [15/09/2011 19:38:04] - [10838528] - (.().-. - ()) - C:\WINDOWS\Installer\2bb4686.msp [15/09/2011 19:39:22] - [11163136] - (.().-. - ()) - C:\WINDOWS\Installer\2bb4690.msp [15/09/2011 19:40:36] - [7959552] - (.().-. - ()) - C:\WINDOWS\Installer\2bb4698.msp [15/09/2011 19:40:52] - [4760064] - (.().-. - ()) - C:\WINDOWS\Installer\2bb46a0.msp [16/08/2016 23:51:56] - [5308416] - (.().-. - ()) - C:\WINDOWS\Installer\2ce8c519.msp [15/09/2016 06:38:01] - [53339648] - (.().-. - ()) - C:\WINDOWS\Installer\2ce8c527.msp [17/08/2016 00:18:52] - [13074432] - (.().-. - ()) - C:\WINDOWS\Installer\2ce8c539.msp [17/08/2016 00:15:28] - [9695232] - (.().-. - ()) - C:\WINDOWS\Installer\2ce8c54c.msp [17/08/2016 00:15:52] - [16412672] - (.().-. - ()) - C:\WINDOWS\Installer\2ce8c55f.msp [17/08/2016 00:18:00] - [10465280] - (.().-. - ()) - C:\WINDOWS\Installer\2ce8c572.msp [14/04/2016 08:05:44] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\2eea876.msp [14/04/2016 08:01:50] - [5959680] - (.().-. - ()) - C:\WINDOWS\Installer\2eea889.msp [14/04/2016 08:04:46] - [11169792] - (.().-. - ()) - C:\WINDOWS\Installer\2eea89d.msp [14/04/2016 08:00:42] - [11554816] - (.().-. - ()) - C:\WINDOWS\Installer\2eea8b0.msp [19/11/2014 09:45:32] - [11059200] - (.().-. - ()) - C:\WINDOWS\Installer\309ced4f.msp [25/11/2014 11:16:04] - [11124736] - (.().-. - ()) - C:\WINDOWS\Installer\309ced63.msp [12/11/2014 21:12:46] - [10436608] - (.().-. - ()) - C:\WINDOWS\Installer\309ced76.msp [25/11/2014 11:17:26] - [9691136] - (.().-. - ()) - C:\WINDOWS\Installer\309ced89.msp [25/11/2014 11:15:40] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\309ced9c.msp [25/11/2014 11:15:34] - [4333568] - (.().-. - ()) - C:\WINDOWS\Installer\309cedaf.msp [13/07/2016 01:06:16] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\33815a33.msp [04/10/2017 13:36:24] - [4341760] - (.().-. - ()) - C:\WINDOWS\Installer\36f5784e.msp [23/01/2013 19:05:40] - [9765376] - (.().-. - ()) - C:\WINDOWS\Installer\438645.msp [01/11/2013 19:17:42] - [5009920] - (.().-. - ()) - C:\WINDOWS\Installer\43865f.msp [14/04/2009 05:56:48] - [10826752] - (.().-. - ()) - C:\WINDOWS\Installer\438665.msp [25/02/2009 20:08:18] - [8311808] - (.().-. - ()) - C:\WINDOWS\Installer\438685.msp [07/05/2009 10:04:18] - [10289664] - (.().-. - ()) - C:\WINDOWS\Installer\43868b.msp [14/04/2009 04:46:40] - [7391744] - (.().-. - ()) - C:\WINDOWS\Installer\438691.msp [14/10/2014 10:25:02] - [4980736] - (.().-. - ()) - C:\WINDOWS\Installer\4386a4.msp [14/04/2009 05:22:04] - [7532544] - (.().-. - ()) - C:\WINDOWS\Installer\4386aa.msp [02/06/2015 18:46:04] - [53332992] - (.().-. - ()) - C:\WINDOWS\Installer\4cac6afd.msp [14/04/2015 08:53:02] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\4cac6b10.msp [21/07/2011 12:34:34] - [3456000] - (.().-. - ()) - C:\WINDOWS\Installer\4cac6b1b.msp [10/03/2015 11:26:44] - [9801728] - (.().-. - ()) - C:\WINDOWS\Installer\4cac6b2e.msp [02/04/2014 02:54:52] - [3246592] - (.().-. - ()) - C:\WINDOWS\Installer\4cac6b39.msp [14/04/2015 08:53:04] - [15880192] - (.().-. - ()) - C:\WINDOWS\Installer\4cac6b4c.msp [15/11/2016 23:18:50] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\4cd816a1.msp [15/11/2016 23:17:40] - [8134656] - (.().-. - ()) - C:\WINDOWS\Installer\4cdfe048.msp [15/11/2016 23:18:24] - [11169792] - (.().-. - ()) - C:\WINDOWS\Installer\4ce62062.msp [27/10/2016 16:43:22] - [9019392] - (.().-. - ()) - C:\WINDOWS\Installer\4ce62075.msp [15/11/2016 23:18:56] - [9695232] - (.().-. - ()) - C:\WINDOWS\Installer\4ce62088.msp [15/11/2016 23:17:32] - [16433152] - (.().-. - ()) - C:\WINDOWS\Installer\4ce6209b.msp [15/11/2016 23:17:00] - [10465280] - (.().-. - ()) - C:\WINDOWS\Installer\4ce620ae.msp [09/09/2015 22:56:52] - [9687040] - (.().-. - ()) - C:\WINDOWS\Installer\4f0e397a.msp [09/09/2015 22:57:11] - [10039296] - (.().-. - ()) - C:\WINDOWS\Installer\4f0e398d.msp [09/09/2015 22:57:20] - [9801728] - (.().-. - ()) - C:\WINDOWS\Installer\4f0e39a0.msp [09/09/2015 22:57:46] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\4f0e39b3.msp [14/04/2016 08:02:44] - [4988928] - (.().-. - ()) - C:\WINDOWS\Installer\65430a.msp [16/05/2014 06:06:18] - [9850368] - (.().-. - ()) - C:\WINDOWS\Installer\6b589f2.msp [16/04/2014 09:43:24] - [22920192] - (.().-. - ()) - C:\WINDOWS\Installer\6e318e9.msp [25/07/2012 17:57:08] - [2532864] - (.().-. - ()) - C:\WINDOWS\Installer\6e3190a.msp [17/07/2013 14:33:26] - [16541184] - (.().-. - ()) - C:\WINDOWS\Installer\6e3191d.msp [25/09/2012 13:39:54] - [1794560] - (.().-. - ()) - C:\WINDOWS\Installer\6e31926.msp [25/09/2012 13:38:52] - [11885568] - (.().-. - ()) - C:\WINDOWS\Installer\6e31952.msp [08/05/2013 22:36:50] - [10943488] - (.().-. - ()) - C:\WINDOWS\Installer\6e31977.msp [17/02/2012 09:45:24] - [2299392] - (.().-. - ()) - C:\WINDOWS\Installer\6e31989.msp [29/01/2014 04:37:28] - [13148160] - (.().-. - ()) - C:\WINDOWS\Installer\6e319a2.msp [15/03/2012 03:24:28] - [1795584] - (.().-. - ()) - C:\WINDOWS\Installer\6e319b5.msp [12/03/2014 03:04:02] - [5196288] - (.().-. - ()) - C:\WINDOWS\Installer\6e319cd.msp [16/04/2014 09:41:38] - [7844864] - (.().-. - ()) - C:\WINDOWS\Installer\6e319e0.msp [11/07/2013 06:30:06] - [8865792] - (.().-. - ()) - C:\WINDOWS\Installer\6e319f3.msp [18/07/2012 16:46:48] - [593408] - (.().-. - ()) - C:\WINDOWS\Installer\6e31a06.msp [01/11/2011 14:34:26] - [1169920] - (.().-. - ()) - C:\WINDOWS\Installer\6e31a19.msp [01/11/2011 14:34:28] - [2247168] - (.().-. - ()) - C:\WINDOWS\Installer\6e31a2c.msp [01/11/2013 19:15:08] - [6185472] - (.().-. - ()) - C:\WINDOWS\Installer\6e31a3f.msp [16/04/2014 09:40:26] - [7900672] - (.().-. - ()) - C:\WINDOWS\Installer\6e31a52.msp [18/09/2013 17:22:18] - [10510848] - (.().-. - ()) - C:\WINDOWS\Installer\6e31a65.msp [04/09/2013 18:56:48] - [5980160] - (.().-. - ()) - C:\WINDOWS\Installer\6e31a78.msp [18/09/2013 17:23:10] - [9745408] - (.().-. - ()) - C:\WINDOWS\Installer\6e31a8b.msp [25/07/2012 17:57:06] - [3157504] - (.().-. - ()) - C:\WINDOWS\Installer\6e31aa1.msp [21/06/2013 11:24:42] - [10079232] - (.().-. - ()) - C:\WINDOWS\Installer\6e31aa8.msp [07/10/2014 17:44:32] - [4333568] - (.().-. - ()) - C:\WINDOWS\Installer\6e31acd.msp [07/10/2014 17:44:08] - [11153408] - (.().-. - ()) - C:\WINDOWS\Installer\6e31ae1.msp [04/09/2013 18:56:14] - [11640832] - (.().-. - ()) - C:\WINDOWS\Installer\6e31af4.msp [19/06/2012 13:54:40] - [2239488] - (.().-. - ()) - C:\WINDOWS\Installer\6e31b07.msp [22/10/2013 07:10:14] - [1111552] - (.().-. - ()) - C:\WINDOWS\Installer\6e31b0f.msp [29/10/2014 08:00:18] - [4931584] - (.().-. - ()) - C:\WINDOWS\Installer\6e31b22.msp [19/12/2012 23:36:38] - [13662720] - (.().-. - ()) - C:\WINDOWS\Installer\6e31b35.msp [16/05/2014 06:08:36] - [8179200] - (.().-. - ()) - C:\WINDOWS\Installer\6e31b48.msp [16/02/2017 12:26:24] - [10465280] - (.().-. - ()) - C:\WINDOWS\Installer\6f454f14.msp [07/04/2017 02:39:37] - [53348864] - (.().-. - ()) - C:\WINDOWS\Installer\6f454f22.msp [16/02/2017 12:27:46] - [11173888] - (.().-. - ()) - C:\WINDOWS\Installer\7121ccd5.msp [16/02/2017 12:28:36] - [9695232] - (.().-. - ()) - C:\WINDOWS\Installer\7121cce8.msp [16/02/2017 12:27:26] - [8134656] - (.().-. - ()) - C:\WINDOWS\Installer\7121ccfb.msp [07/02/2017 12:39:54] - [9805824] - (.().-. - ()) - C:\WINDOWS\Installer\7121cd0e.msp [16/02/2017 12:27:56] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\7121cd21.msp [08/08/2015 17:37:15] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\7524a7.msp [08/08/2015 17:37:29] - [10444800] - (.().-. - ()) - C:\WINDOWS\Installer\7524ba.msp [08/08/2015 17:37:36] - [13508608] - (.().-. - ()) - C:\WINDOWS\Installer\7524cd.msp [08/08/2015 17:37:45] - [9691136] - (.().-. - ()) - C:\WINDOWS\Installer\7524e0.msp [08/08/2015 17:37:51] - [10043392] - (.().-. - ()) - C:\WINDOWS\Installer\7524f4.msp [08/08/2015 17:37:59] - [4726784] - (.().-. - ()) - C:\WINDOWS\Installer\752507.msp [18/02/2015 05:17:44] - [16441344] - (.().-. - ()) - C:\WINDOWS\Installer\8f910.msp [18/02/2015 05:15:46] - [13508608] - (.().-. - ()) - C:\WINDOWS\Installer\8f923.msp [18/03/2015 04:09:52] - [4988928] - (.().-. - ()) - C:\WINDOWS\Installer\8f936.msp [02/05/2015 15:19:12] - [53303296] - (.().-. - ()) - C:\WINDOWS\Installer\8f954.msp [18/03/2015 04:08:20] - [11128832] - (.().-. - ()) - C:\WINDOWS\Installer\8f967.msp [18/02/2015 05:22:54] - [4939776] - (.().-. - ()) - C:\WINDOWS\Installer\8f97a.msp [10/02/2015 13:54:50] - [9691136] - (.().-. - ()) - C:\WINDOWS\Installer\8f98d.msp [18/03/2015 04:08:56] - [4333568] - (.().-. - ()) - C:\WINDOWS\Installer\8f9a0.msp [13/01/2016 08:51:02] - [9699328] - (.().-. - ()) - C:\WINDOWS\Installer\af3c8cd.msp [13/01/2016 08:42:14] - [4988928] - (.().-. - ()) - C:\WINDOWS\Installer\af3c8e0.msp [13/01/2016 08:47:38] - [4337664] - (.().-. - ()) - C:\WINDOWS\Installer\af3c8f3.msp [13/01/2016 08:46:56] - [11177984] - (.().-. - ()) - C:\WINDOWS\Installer\af3c907.msp [13/01/2016 08:41:26] - [16441344] - (.().-. - ()) - C:\WINDOWS\Installer\af3c91a.msp [13/01/2016 08:39:14] - [10461184] - (.().-. - ()) - C:\WINDOWS\Installer\af3c92d.msp [14/03/2017 14:51:36] - [9691136] - (.().-. - ()) - C:\WINDOWS\Installer\bd72f09.msp [14/03/2017 14:50:38] - [10469376] - (.().-. - ()) - C:\WINDOWS\Installer\bd72f1c.msp [22/03/2017 06:57:52] - [13086720] - (.().-. - ()) - C:\WINDOWS\Installer\bd72f2f.msp [12/04/2017 18:01:05] - [53348864] - (.().-. - ()) - C:\WINDOWS\Installer\bd72f3d.msp [14/03/2017 14:51:16] - [16433152] - (.().-. - ()) - C:\WINDOWS\Installer\bd72f4f.msp [11/11/2015 20:05:38] - [3657728] - (.().-. - ()) - C:\WINDOWS\Installer\cb96284.msp [11/11/2015 20:06:31] - [4333568] - (.().-. - ()) - C:\WINDOWS\Installer\cb96297.msp [11/11/2015 20:06:54] - [1122304] - (.().-. - ()) - C:\WINDOWS\Installer\cb9629e.msp [11/11/2015 20:06:59] - [16429056] - (.().-. - ()) - C:\WINDOWS\Installer\cb962b1.msp [11/11/2015 20:07:11] - [10457088] - (.().-. - ()) - C:\WINDOWS\Installer\cb962c4.msp [11/11/2015 20:07:19] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\cb962d7.msp [11/11/2015 20:07:28] - [5173248] - (.().-. - ()) - C:\WINDOWS\Installer\cb962ea.msp [11/11/2015 20:07:35] - [9687040] - (.().-. - ()) - C:\WINDOWS\Installer\cb962fd.msp [11/11/2015 20:07:43] - [11161600] - (.().-. - ()) - C:\WINDOWS\Installer\cb96311.msp [11/11/2015 20:08:59] - [5300224] - (.().-. - ()) - C:\WINDOWS\Installer\cb96324.msp [11/11/2015 20:09:08] - [8691712] - (.().-. - ()) - C:\WINDOWS\Installer\cb96339.msp [05/09/2017 19:21:32] - [17059840] - (.().-. - ()) - C:\WINDOWS\Installer\e080b9.msp [03/09/2017 03:10:26] - [4997120] - (.().-. - ()) - C:\WINDOWS\Installer\e080ce.msp [03/09/2017 03:09:52] - [5218304] - (.().-. - ()) - C:\WINDOWS\Installer\e080f1.msp [03/09/2017 03:07:04] - [1142784] - (.().-. - ()) - C:\WINDOWS\Installer\e080fa.msp [03/09/2017 02:58:32] - [10063872] - (.().-. - ()) - C:\WINDOWS\Installer\e0810d.msp [03/09/2017 03:08:26] - [9703424] - (.().-. - ()) - C:\WINDOWS\Installer\f2df6b.msp [05/09/2017 19:24:04] - [8134656] - (.().-. - ()) - C:\WINDOWS\Installer\f2df7e.msp [14/10/2015 19:39:55] - [9687040] - (.().-. - ()) - C:\WINDOWS\Installer\f332b97.msp [14/10/2015 19:40:14] - [16429056] - (.().-. - ()) - C:\WINDOWS\Installer\f332baa.msp [14/10/2015 19:40:43] - [10035200] - (.().-. - ()) - C:\WINDOWS\Installer\f332bbd.msp [14/10/2015 19:40:51] - [4984832] - (.().-. - ()) - C:\WINDOWS\Installer\f332bcf.msp [03/09/2017 03:09:12] - [12152832] - (.().-. - ()) - C:\WINDOWS\Installer\f59674.msp [14/01/2015 23:36:26] - [4333568] - (.().-. - ()) - C:\WINDOWS\Installer\f9021bf.msp [14/01/2015 23:34:40] - [10444800] - (.().-. - ()) - C:\WINDOWS\Installer\f9021d2.msp [14/01/2015 23:35:00] - [2576384] - (.().-. - ()) - C:\WINDOWS\Installer\f9021e7.msp [14/01/2015 23:35:04] - [10158080] - (.().-. - ()) - C:\WINDOWS\Installer\f9021fd.msp [14/01/2015 23:35:00] - [11120640] - (.().-. - ()) - C:\WINDOWS\Installer\f902217.msp [14/01/2015 23:34:58] - [4980736] - (.().-. - ()) - C:\WINDOWS\Installer\f90222a.msp [14/01/2015 23:36:46] - [9691136] - (.().-. - ()) - C:\WINDOWS\Installer\f90223d.msp ---------- | %System%\*.in* [15/09/2018 09:29:16] - [3329] - C:\WINDOWS\System32\ieuinit.inf [06/08/2016 16:55:26] - [36409] - C:\WINDOWS\System32\netrtwlanu.inf [15/04/2019 19:05:06] - [1773222] - C:\WINDOWS\System32\PerfStringBackup.INI [15/09/2018 09:28:56] - [60124] - C:\WINDOWS\System32\tcpmon.ini [15/09/2018 09:28:42] - [2404] - C:\WINDOWS\System32\WimBootCompress.ini [15/09/2018 09:29:28] - [3329] - C:\WINDOWS\Syswow64\ieuinit.inf [02/05/2015 14:59:39] - [1766590] - C:\WINDOWS\Syswow64\PerfStringBackup.INI [15/09/2018 09:29:07] - [2404] - C:\WINDOWS\Syswow64\WimBootCompress.ini ---------- | Listing no Microsoft signed files (Not necessary Malwares) | system32 | Syswow64 | General scan [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [0 Ko] - C:\WINDOWS\AppPatch\Custom\Custom64 [MD5.D41D8CD98F00B204E9800998ECF8427E] - |A| - [06/10/2019 19:50:01] - (.-.) - [0 Ko] - (0.0.0.0) - C:\WINDOWS\Temp\CProgram Files (x86)Opera63.0.3368.94opera_autoupdate.download.lock [MD5.00000000000000000000000000000000] - |D| - [06/10/2019 19:44:54] - [0 Ko] - C:\WINDOWS\Temp\DiagTrack_alternativeTrace [MD5.00000000000000000000000000000000] - |D| - [06/10/2019 19:44:54] - [0 Ko] - C:\WINDOWS\Temp\DiagTrack_aot [MD5.00000000000000000000000000000000] - |D| - [06/10/2019 19:44:54] - [0 Ko] - C:\WINDOWS\Temp\DiagTrack_diag [MD5.00000000000000000000000000000000] - |D| - [06/10/2019 19:44:54] - [0 Ko] - C:\WINDOWS\Temp\DiagTrack_miniTrace [MD5.00000000000000000000000000000000] - |D| - [06/10/2019 19:44:48] - [0 Ko] - C:\WINDOWS\Temp\gpipetorrent_log [MD5.E3553F95974F0462A0414CE17D046A8E] - |A| - [06/10/2019 15:35:04] - (.-.) - [5.84 Ko] - (0.0.0.0) - C:\WINDOWS\Temp\MpCmdRun.log [MD5.00000000000000000000000000000000] - |D| - [06/10/2019 19:49:57] - [0.4 Ko] - C:\WINDOWS\Temp\opera autoupdate [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:15] - [0 Ko] - C:\WINDOWS\System32\0409 [MD5.D6F8DD9F561B8A67FFAC2BAD7E989770] - |A| - [15/09/2018 09:28:43] - (.-.) - [0.23 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@AppHelpToast.png [MD5.82C37C3E27020AF6C2E018E944284676] - |A| - [15/09/2018 09:28:42] - (.-.) - [0.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@AudioToastIcon.png [MD5.8E4B25CC8E98F63DBD54176DFAB539E0] - |A| - [15/09/2018 09:28:30] - (.-.) - [0.44 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@BackgroundAccessToastIcon.png [MD5.3937359E324E15F6A7A7092D4DAEBD64] - |A| - [15/09/2018 09:28:50] - (.-.) - [0.19 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@bitlockertoastimage.png [MD5.495C1F072039B434827A5FE0D9761E4D] - |A| - [15/09/2018 09:28:51] - (.-.) - [0.32 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@EnrollmentToastIcon.png [MD5.C2A332DE50FE519DA21AFB8BD6E134F4] - |A| - [15/09/2018 09:28:53] - (.-.) - [0.55 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@language_notification_icon.png [MD5.A119D69B4C29845D3F8CE2E5638C8E65] - |A| - [15/09/2018 09:29:21] - (.-.) - [0.47 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@optionalfeatures.png [MD5.1622DE67156496C78D6B7BE9B471645B] - |A| - [15/09/2018 09:28:56] - (.-.) - [0.39 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@VpnToastIcon.png [MD5.7AC3EA1A5175106ED6467FF0C5315541] - |A| - [15/09/2018 09:28:26] - (.-.) - [14.75 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WiFiNotificationIcon.png [MD5.79166EAF65485F1432DD72B72870026B] - |A| - [15/09/2018 09:29:13] - (.-.) - [190.86 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@windows-hello-V4.1.gif [MD5.13EF2C8D799F7B6E9D8E3D6BACB9C779] - |A| - [15/09/2018 09:29:13] - (.-.) - [0.7 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WindowsHelloFaceToastIcon.png [MD5.F553B252FEC3134D4F5303D9B25298B3] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.51 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WindowsUpdateToastIcon.contrast-black.png [MD5.DAD405CBDE259DE527EBF71BCC28099C] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.79 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WindowsUpdateToastIcon.contrast-white.png [MD5.F553B252FEC3134D4F5303D9B25298B3] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.51 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WindowsUpdateToastIcon.png [MD5.DB71001FC261F6685BE410527DAE3942] - |A| - [15/09/2018 09:29:14] - (.-.) - [0.67 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WirelessDisplayToast.png [MD5.D0FCF781D0801ABF5F74B54E98076A5B] - |A| - [15/09/2018 09:28:36] - (.-.) - [0.15 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WwanNotificationIcon.png [MD5.85D91E478AF18125007C531227FF6E59] - |A| - [15/09/2018 09:28:36] - (.-.) - [0.34 Ko] - (0.0.0.0) - C:\WINDOWS\System32\@WwanSimLockIcon.png [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 08:09:30] - [2819.03 Ko] - C:\WINDOWS\System32\AdvancedInstallers [MD5.683D9D4BBFF09FF0808B49FEA49031E9] - |A| - [19/12/2018 17:42:54] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon AMD AVE Driver Component.) - [130.8 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\amdave64.dll [MD5.EF76B2257CE51FBB81C2E8C0B9E9944B] - |A| - [21/04/2016 12:44:18] - (.-.) - [171.47 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amde31a.dat [MD5.5D075D04FE298A7A9D50F39CEBC1FE78] - |A| - [21/04/2016 12:45:16] - (.-.) - [162.72 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amde34a.dat [MD5.BB954281149C8FEB4DD075846963AF0A] - |A| - [21/04/2016 12:45:24] - (.-.) - [162.72 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amde34b.dat [MD5.DB87480120F059516DE6E711F64635B5] - |A| - [19/12/2018 17:42:54] - (.-.) - [463.09 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdgfxinfo64.dll [MD5.2C6A83C5FC41419890F41AAAD08900D9] - |A| - [19/12/2018 17:42:54] - (.Copyright (C) 2013 - Universal Adapter for Adobe.) - [185.63 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\amdhcp64.dll [MD5.E8EA89A8EEB5331A418BEE6BC6C3AAB4] - |A| - [01/08/2016 09:21:12] - (.-.) - [871.11 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdicdxx.dat [MD5.886B9248072309BDD2D0453AD66EB5C1] - |A| - [19/12/2018 17:42:56] - (.-.) - [33.64 Ko] - (0.0.0.0) - C:\WINDOWS\System32\AMDKernelEvents.man [MD5.390ACACE48DD1E69A9B5D35E69404A98] - |A| - [19/12/2018 17:42:56] - (.Advanced Micro Devices, Inc. Copyright (C) 2015 - LiquidVR SDK 1.0.) - [899.59 Ko] - (1.0.15.0) - C:\WINDOWS\System32\amdlvr64.dll [MD5.716BF5A6E6C2E7F6958A1775DDA1DF54] - |A| - [19/12/2018 17:42:56] - (.Copyright (c) 2013 Advanced Micro Devices, Inc. - Radeon MCL Universal Driver.) - [540.09 Ko] - (1.6.0.0) - C:\WINDOWS\System32\amdmcl64.dll [MD5.AE9197817E26BAE31E1F2081B62B6534] - |A| - [19/12/2018 17:42:56] - (.-.) - [534.05 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdmiracast.dll [MD5.415480EDBBF661B481E4E366A4696707] - |A| - [08/10/2015 12:25:02] - (.-.) - [1168 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdocl_as64.exe [MD5.73B22FCC37CA47352A298118A5F24616] - |A| - [08/10/2015 12:25:02] - (.-.) - [1045.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\amdocl_ld64.exe [MD5.3D9E25A24ED4646035931CFBB36CEEC6] - |A| - [19/12/2018 17:43:00] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon PCOM Universal Driver.) - [124.74 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\amdpcom64.dll [MD5.83922FB6CE1D2ECF1570188ACD50C1CF] - |A| - [19/12/2018 17:43:00] - (.Copyright (C) 2014-2017 AMD Inc. - amdxcstub64.dll.) - [117.09 Ko] - (8.18.10.286) - C:\WINDOWS\System32\amdxc64.dll [MD5.F463E4EADD21D897202A875714D3FE0D] - |A| - [19/12/2018 17:43:00] - (.Advanced Micro Devices, Inc. Copyright (C) 2017 - Advanced Media Framework.) - [3647.09 Ko] - (1.4.11.0) - C:\WINDOWS\System32\amfrt64.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [0 Ko] - C:\WINDOWS\System32\AppLocker [MD5.00000000000000000000000000000000] - |D| - [29/11/2015 11:28:41] - [0 Ko] - C:\WINDOWS\System32\appmgmt [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [2710.82 Ko] - C:\WINDOWS\System32\appraiser [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 18:39:06] - [287.7 Ko] - C:\WINDOWS\System32\AppV [MD5.F94192B47ACA96AFFEBC1073891EBB42] - |A| - [16/07/2016 13:43:20] - (.-.) - [0.19 Ko] - (0.0.0.0) - C:\WINDOWS\System32\AppVStreamingUX.exe.config [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [283 Ko] - C:\WINDOWS\System32\ar-SA [MD5.FE6D792232F609743EABF2C089033651] - |A| - [15/09/2018 09:29:14] - (.Copyright (c) libarchive authors - Windows-internal libarchive library.) - [607.5 Ko] - (3.3.2.0) - C:\WINDOWS\System32\archiveint.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\as-IN [MD5.631AC5C476FF6C42ABEF44A410666911] - |A| - [15/09/2018 09:37:31] - (.-.) - [471.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\AssignedAccessCsp.dll [MD5.F594A2CF1537704FF3DF66E6AB53416C] - |A| - [19/12/2018 17:43:00] - (.© 2004 Advanced Micro Devices, Inc. - eRecord Message Resource File.) - [68.09 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\ati2erec.dll [MD5.B1526FB55781BE025ED8509CCEDD4124] - |A| - [19/12/2018 17:43:00] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1614.09 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\atiadlxx.dll [MD5.4C38710FF368CC25FD23802F7171BFC8] - |A| - [19/12/2018 17:43:00] - (.-.) - [882.52 Ko] - (0.0.0.0) - C:\WINDOWS\System32\atiapfxx.blb [MD5.CB548BE62EDC06D610A61B223C302C47] - |A| - [08/06/2017 19:24:06] - (.Copyright (C) 2009 Advanced Micro Devices, Inc. - atiapfxx Application.) - [651.02 Ko] - (22.19.676.0) - C:\WINDOWS\System32\atiapfxx.exe [MD5.281A85CD6E414D72EBB65F4F8E4CAE5C] - |A| - [19/12/2018 17:43:00] - (.Copyright (C) 1998-2012 AMD Inc. - aticfxstub64.dll.) - [165.3 Ko] - (8.17.10.1646) - C:\WINDOWS\System32\aticfx64.dll [MD5.1841438B71F270B010139BA6B1AA81D2] - |A| - [19/12/2018 17:43:00] - (.2002-2012 - Graphics DEM.) - [457.09 Ko] - (4.5.6925.36053) - C:\WINDOWS\System32\atidemgy.dll [MD5.EF1E0106FD532B52AFE7C9AFF00C3E25] - |A| - [19/12/2018 17:43:02] - (.-.) - [120.59 Ko] - (0.0.0.0) - C:\WINDOWS\System32\atidxx64.dll [MD5.63462ACCB82BC26090125392D5F8B20C] - |A| - [19/12/2018 17:43:02] - (.-.) - [429.59 Ko] - (0.0.0.0) - C:\WINDOWS\System32\atieah64.exe [MD5.F6E48DC7C79A66516181002972F25B8D] - |A| - [19/12/2018 17:43:02] - (.Copyright © 2008-2009 AMD - AMD External Events Client Module.) - [740.09 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\atieclxx.exe [MD5.803206C310D5A88B2C45A258C0C511F9] - |A| - [19/12/2018 17:43:02] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atigktxx.dll.) - [234.59 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\atig6txx.dll [MD5.079EFFD5BECB418FE6596229B28D7324] - |A| - [06/11/2014 08:53:26] - (.-.) - [720.13 Ko] - (0.0.0.0) - C:\WINDOWS\System32\atiicdxx.dat [MD5.E51221B4593D2B59EF346FFC06408569] - |A| - [19/12/2018 17:43:02] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon PCOM Universal Driver.) - [124.74 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\atimpc64.dll [MD5.06F2AB2FDF43DEF65480CF0372ADC3D5] - |A| - [19/12/2018 17:43:02] - (.Copyright ? 2009 AMD - Multi-language DPPE DLL.) - [122.09 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\atimuixx.dll [MD5.EAE733D140228EC238499C3772FF13C8] - |A| - [19/12/2018 17:43:04] - (.Copyright (c) 2010 Advanced Micro Devices, Inc. - Radeon spu api dll.) - [155.11 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\atisamu64.dll [MD5.7E5F8AAF3BF7E6AAEFCB8C8D66DBF3DB] - |A| - [19/12/2018 17:43:04] - (.-.) - [3357.06 Ko] - (0.0.0.0) - C:\WINDOWS\System32\atiumd6a.cap [MD5.90249110AF2F71542FEF06023B03946A] - |A| - [21/04/2016 12:41:46] - (.-.) - [98.45 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativce02.dat [MD5.B105FA23A4DD0D29BC39D534A667FE27] - |A| - [21/04/2016 12:44:10] - (.-.) - [173.13 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativce03.dat [MD5.24BDCE9781D8DC7904D161108C133B77] - |A| - [13/04/2016 17:58:06] - (.-.) - [228.8 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_cik.dat [MD5.0EBDD6405C1DCBBC6777736553007074] - |A| - [17/05/2016 18:25:46] - (.-.) - [228.55 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_cik_nd.dat [MD5.493074B35ADFE2164299FC845926F4F3] - |A| - [06/06/2016 18:47:58] - (.-.) - [260.56 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_cz_nd.dat [MD5.CD35635BD1B0990F2B385089A512980D] - |A| - [24/11/2015 06:43:18] - (.-.) - [316 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_el.dat [MD5.BBDE464D6A4979FEE5873E36A8039903] - |A| - [17/06/2016 16:45:12] - (.-.) - [360.03 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_el_nd.dat [MD5.6F6A71E27A400C229C01E11F4D69C7FE] - |A| - [06/06/2016 18:52:00] - (.-.) - [254.86 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_FJ.dat [MD5.BCA02E73496CAC3CE5E5FD4FA09B5FD5] - |A| - [16/06/2016 16:09:38] - (.-.) - [254.61 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_FJ_nd.dat [MD5.96276EA40E10AD46132057C2220FF555] - |A| - [17/06/2016 16:50:52] - (.-.) - [264.56 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_stn_nd.dat [MD5.BD71B3543D232F4900CDA9C786436401] - |A| - [29/03/2016 20:09:04] - (.-.) - [315.43 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_vi.dat [MD5.7F926DD91B4D799C3D681D0BC92F9202] - |A| - [17/05/2016 19:05:16] - (.-.) - [315.17 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvaxy_vi_nd.dat [MD5.7C163EDE63854539828F5B2C1BC529FD] - |A| - [19/12/2018 17:43:04] - (.-.) - [153.46 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvsva.dat [MD5.219D7091DD1D93728392337FE9C7ADD6] - |A| - [19/12/2018 17:43:04] - (.-.) - [200.15 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ativvsvl.dat [MD5.C03F0062C0749CDB59A4D60862C3E83E] - |A| - [15/09/2018 09:28:22] - (.-.) - [134.86 Ko] - (0.0.0.0) - C:\WINDOWS\System32\AverageRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\az-Latn-AZ [MD5.705628497C0012302212A46ADD463E6E] - |A| - [15/09/2018 09:28:22] - (.-.) - [8.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothPairingSystemToastIcon.contrast-black.png [MD5.F63C615733A3337BF2BEA96C6EE9B568] - |A| - [15/09/2018 09:28:22] - (.-.) - [8.53 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothPairingSystemToastIcon.contrast-high.png [MD5.705628497C0012302212A46ADD463E6E] - |A| - [15/09/2018 09:28:22] - (.-.) - [8.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothPairingSystemToastIcon.contrast-white.png [MD5.DAF1DCB4AEE839A1965F4CC160C49A53] - |A| - [15/09/2018 09:28:22] - (.-.) - [8.34 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothPairingSystemToastIcon.png [MD5.28ECA83D7F9D10D69E969675D1FF6725] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.29 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothSystemToastIcon.contrast-white.png [MD5.A620186FF1CDE4EE117FC4CAD648B9CC] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.2 Ko] - (0.0.0.0) - C:\WINDOWS\System32\BluetoothSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\bn-BD [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\bn-IN [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [5675.02 Ko] - C:\WINDOWS\System32\Boot [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\bs-Latn-BA [MD5.FF8455531929A7067F8A6267B34D2DB8] - |A| - [15/09/2018 09:28:42] - (.Copyright (C) 2008 - Gestionnaire de contexte pour réseau personnel Bluetooth.) - [181.5 Ko] - (1.0.0.1) - C:\WINDOWS\System32\BthpanContextHandler.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [0.1 Ko] - C:\WINDOWS\System32\Bthprops [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [5.5 Ko] - C:\WINDOWS\System32\ca-ES [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ca-ES-valencia [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 08:09:26] - [74127.9 Ko] - C:\WINDOWS\System32\CatRoot [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [43999.31 Ko] - C:\WINDOWS\System32\catroot2 [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\chr-CHER-US [MD5.7AF10C5A96A5F38AB49E208E547C740A] - |A| - [19/12/2018 17:43:06] - (.-.) - [333.12 Ko] - (0.0.0.0) - C:\WINDOWS\System32\clinfo.exe [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [11.19 Ko] - C:\WINDOWS\System32\CodeIntegrity [MD5.8DA5C327185D9970F944DA371908852D] - |A| - [19/12/2018 17:43:06] - (.AMD. - CoInstaller DLL.) - [1550.61 Ko] - (1.0.5.9) - C:\WINDOWS\System32\coinst_18.50.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [369.5 Ko] - C:\WINDOWS\System32\com [MD5.535884123FABC2C15AA7DEC9834B55D4] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.67 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ComputerToastIcon.contrast-white.png [MD5.89F92266DFC6F93961DFFBB2D6C61A15] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.38 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ComputerToastIcon.png [MD5.755BFC56892C3ECCA0F02AAC5E0BD3B1] - |A| - [06/10/2017 12:53:38] - (.2013 © Real Sound Lab SIA, iSoft Solutions - CONEQ™ Media Suite APO GUI Library.) - [119.45 Ko] - (1.0.0.4) - C:\WINDOWS\System32\CONEQMSAPOGUILibrary.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 08:09:26] - [341074.78 Ko] - C:\WINDOWS\System32\config [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:50] - [53.11 Ko] - C:\WINDOWS\System32\Configuration [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [327.5 Ko] - C:\WINDOWS\System32\cs-CZ [MD5.C5BC3754B07675FF785BBA129025FD3A] - |A| - [22/03/2012 22:07:48] - (.Copyright © Cambridge Silicon Radio Limited, 2010-12Cambridge Silicon Radio Limited - Bluetooth control Panel helper.) - [745.2 Ko] - (2.1.63.0) - C:\WINDOWS\System32\CsrCplHelper.exe [MD5.DA9967150EDE42FD187EB4C4AC3A6D84] - |A| - [22/03/2012 22:06:00] - (.Copyright © Cambridge Silicon Radio Limited, 2010-12Cambridge Silicon Radio Limited - HCR Client Monitor DLL.) - [71.7 Ko] - (2.1.63.0) - C:\WINDOWS\System32\csrportmon.dll [MD5.8F061E65176FD673FC4B19CF1134E102] - |A| - [22/03/2012 22:11:54] - (.-.) - [12.7 Ko] - (0.0.0.0) - C:\WINDOWS\System32\CsrSecCoins.dll [MD5.BDEBD2FC4927DA00EEA263AF9CF8F7ED] - |A| - [15/09/2018 09:29:14] - (.© 1996 - 2017 Daniel Stenberg, . - The curl executable.) - [414.5 Ko] - (7.55.1.0) - C:\WINDOWS\System32\curl.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\cy-GB [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [323 Ko] - C:\WINDOWS\System32\da-DK [MD5.44C688E0013097CF8594C9145BF37631] - |A| - [15/04/2019 17:47:04] - (.-.) - [145 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DataStoreCacheDumpTool.exe [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [240.31 Ko] - C:\WINDOWS\System32\DDFs [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [368.5 Ko] - C:\WINDOWS\System32\de-DE [MD5.C04ED7B2794D40E8E777FD44ED44FC50] - |A| - [15/09/2018 09:28:30] - (.-.) - [0.36 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DefaultAccountTile.png [MD5.618BA9E529EAB7E11DBA43469481835F] - |A| - [15/09/2018 09:28:22] - (.-.) - [4128.04 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DefaultHrtfs.bin [MD5.664AA698FC0106A2B075A641E8DC6302] - |A| - [15/09/2018 09:31:36] - (.-.) - [0.84 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DefaultQuestions.json [MD5.16A46C72CF08987E7A3CDC8B36D30351] - |A| - [13/10/2017 05:18:48] - (.Advanced Micro Devices. - Delay Audio Processing Object.) - [120.48 Ko] - (1.0.0.1) - C:\WINDOWS\System32\DelayAPO.dll [MD5.74CBFD8DD24538D3E5E24305905841F1] - |A| - [10/07/2015 14:22:52] - (.-.) - [15.77 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DESKTOP-M7P1NB6_Administrator_HistoryPrediction.bin [MD5.851A9305E14B348CA0D9C7FB75391FDB] - |A| - [15/09/2018 09:28:39] - (.-.) - [272.34 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DesktopKeepOnToastImg.gif [MD5.4A6FA3C0EFD237F104E09A22883D9388] - |A| - [15/09/2018 09:28:44] - (.-.) - [3.85 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DetailedReading-Default.xml [MD5.DCF2510E0745720E543E84F5E921FCC0] - |A| - [18/03/2014 12:14:53] - (.-.) - [256.19 Ko] - (0.0.0.0) - C:\WINDOWS\System32\dfpinc.dat [MD5.9392BB3AB1009D83340C1F101D7DB7D5] - |A| - [19/12/2018 17:43:06] - (.-.) - [481.11 Ko] - (0.0.0.0) - C:\WINDOWS\System32\dgtrayicon.exe [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:50] - [906 Ko] - C:\WINDOWS\System32\DiagSvcs [MD5.BE6BCD1A0D8F8F8072996900200D4CF8] - |A| - [15/09/2018 09:28:38] - (.-.) - [82.01 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DiskSnapshot.conf [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 08:09:28] - [9540.83 Ko] - C:\WINDOWS\System32\Dism [MD5.6AB2B935BF38EB13CFCB9506223FD6E7] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.59 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DisplaySystemToastIcon.contrast-white.png [MD5.FF004E0B30E5E4EC747B3D8EF6E3B89E] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.34 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DisplaySystemToastIcon.png [MD5.E5FF71824826FE9DB5D302FA55884644] - |A| - [23/08/2019 03:45:06] - (.-.) - [0.31 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DrtmAuth1.bin [MD5.6F152A54CCB4F9B6557C41750630BDD3] - |A| - [23/08/2019 03:45:06] - (.-.) - [0.31 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DrtmAuth2.bin [MD5.EBAAD820A1E0EDBEF923FDDE9A991979] - |A| - [23/08/2019 03:45:06] - (.-.) - [0.31 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DrtmAuth3.bin [MD5.7DB43AB1C2456E3F0B9B8A078F4D1EDD] - |A| - [23/08/2019 03:45:06] - (.-.) - [0.31 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DrtmAuth4.bin [MD5.E5DED331E0765CA2D33D95BCBE9D0BBE] - |A| - [23/08/2019 03:45:06] - (.-.) - [0.31 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DrtmAuth5.bin [MD5.9AE9CBB1172693E997844FBB3F990DD5] - |A| - [23/08/2019 03:45:06] - (.-.) - [0.31 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DrtmAuth6.bin [MD5.9B7995C4D380FEFD946324D4F9126BD3] - |A| - [23/08/2019 03:45:06] - (.-.) - [0.31 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DrtmAuth7.bin [MD5.D944438923F333CB734BAA6EC42D8186] - |A| - [23/08/2019 03:45:06] - (.-.) - [0.31 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DrtmAuth8.bin [MD5.00000000000000000000000000000000] - |DC| - [18/08/2016 21:37:45] - [1127.11 Ko] - C:\WINDOWS\System32\DRVSTORE [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:50] - [161.5 Ko] - C:\WINDOWS\System32\dsc [MD5.DF84EB7B44D1414284BA384F0061D1DC] - |A| - [15/09/2018 09:28:22] - (.-.) - [728.08 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DynamicLong.bin [MD5.346870077DFD18867A9693C7A59AA3E6] - |A| - [15/09/2018 09:28:22] - (.-.) - [503.08 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DynamicMedium.bin [MD5.2BEC13D68312ADE8C0065D8BCC146D2F] - |A| - [15/09/2018 09:28:22] - (.-.) - [315.58 Ko] - (0.0.0.0) - C:\WINDOWS\System32\DynamicShort.bin [MD5.10C38E1CA0D664F58E8B9F3645885E1D] - |A| - [15/04/2019 17:46:04] - (.-.) - [0.07 Ko] - (0.0.0.0) - C:\WINDOWS\System32\edgehtmlpluginpolicy.bin [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [370.5 Ko] - C:\WINDOWS\System32\el-GR [MD5.F0F15528AD75FE5E71622CAEA689C457] - |A| - [08/08/2015 12:13:13] - (.-.) - [22.66 Ko] - (0.0.0.0) - C:\WINDOWS\System32\emptyregdb.dat [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:15] - [0 Ko] - C:\WINDOWS\System32\en [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [243 Ko] - C:\WINDOWS\System32\en-GB [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [2228.86 Ko] - C:\WINDOWS\System32\en-US [MD5.077D923576C8A115448BC531F892D837] - |A| - [17/06/2015 17:44:06] - (.Copyright (C) SEIKO EPSON CORPORATION 2004-2014. - EpsonNet Print Component.) - [489 Ko] - (3.1.2.1) - C:\WINDOWS\System32\enppmon.dll [MD5.0CBEE782163BC7FC5A17442AA4A62E78] - |A| - [17/06/2015 17:47:58] - (.Copyright (C) SEIKO EPSON CORPORATION 2004-2014. - EpsonNet Print Component.) - [2584.5 Ko] - (3.1.2.1) - C:\WINDOWS\System32\enppui.dll [MD5.077D923576C8A115448BC531F892D837] - |A| - [17/06/2015 17:44:06] - (.Copyright (C) SEIKO EPSON CORPORATION 2004-2014. - EpsonNet Print Component.) - [489 Ko] - (3.1.2.1) - C:\WINDOWS\System32\ensppmon.dll [MD5.0CBEE782163BC7FC5A17442AA4A62E78] - |A| - [17/06/2015 17:47:58] - (.Copyright (C) SEIKO EPSON CORPORATION 2004-2014. - EpsonNet Print Component.) - [2584.5 Ko] - (3.1.2.1) - C:\WINDOWS\System32\ensppui.dll [MD5.00000000000000000000000000000000] - |D| - [27/01/2016 20:11:23] - [6 Ko] - C:\WINDOWS\System32\es-cl [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [353 Ko] - C:\WINDOWS\System32\es-ES [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [270 Ko] - C:\WINDOWS\System32\es-MX [MD5.8159960E8BA20F1C4A4EBCF0DAEC60E5] - |A| - [20/03/2016 13:11:00] - (.Copyright (C) SEIKO EPSON CORPORATION 2005-2010. - ECBTEGB AMD64.) - [82 Ko] - (3.3.0.0) - C:\WINDOWS\System32\E_YD4BPME.DLL [MD5.00EDB9F8BA5F605B488A79073520EFAC] - |A| - [20/03/2016 13:11:02] - (.Copyright (C) SEIKO EPSON CORPORATION 2005-2014. - EPSON Bi-directional Monitor AMD64.) - [176 Ko] - (4.6.0.0) - C:\WINDOWS\System32\E_YLMBPME.DLL [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:50] - [16905.14 Ko] - C:\WINDOWS\System32\F12 [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\fa-IR [MD5.4DED57BD7ACB9B0EBBE82034EC44645A] - |A| - [15/09/2018 09:28:26] - (.-.) - [43.22 Ko] - (0.0.0.0) - C:\WINDOWS\System32\FeatureToastBulldogImg.png [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [327 Ko] - C:\WINDOWS\System32\fi-FI [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\fil-PH [MD5.B8DF2E715382BB10821C73103CE8E481] - |A| - [15/04/2019 18:46:55] - (.-.) - [536.04 Ko] - (0.0.0.0) - C:\WINDOWS\System32\FNTCACHE.DAT [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:15] - [3490.5 Ko] - C:\WINDOWS\System32\fr [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [283.5 Ko] - C:\WINDOWS\System32\fr-CA [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [48143.48 Ko] - C:\WINDOWS\System32\fr-FR [MD5.D8201D1939FC118D90BB464243AF50F4] - |A| - [26/02/2013 08:31:28] - (.Copyright © Beepa P/L 2013 - Fraps.) - [70 Ko] - (3.5.99.15618) - C:\WINDOWS\System32\frapsv64.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [0 Ko] - C:\WINDOWS\System32\FxsTmp [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ga-IE [MD5.A93FAC41DB418B3277FA1E1225C73835] - |A| - [19/12/2018 17:43:06] - (.-.) - [469.11 Ko] - (0.0.0.0) - C:\WINDOWS\System32\GameManager64.dll [MD5.41FD64AE28A0C932CA7B2A250993D675] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.45 Ko] - (0.0.0.0) - C:\WINDOWS\System32\GameSystemToastIcon.contrast-white.png [MD5.6DC77FD8B062264AF1C6DA325ABB7010] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.11 Ko] - (0.0.0.0) - C:\WINDOWS\System32\GameSystemToastIcon.png [MD5.2E6AF4D5BF6E31E728F409984C3045D4] - |A| - [15/09/2018 09:29:23] - (.-.) - [86.7 Ko] - (0.0.0.0) - C:\WINDOWS\System32\gatherNetworkInfo.vbs [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\gd-GB [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [5.5 Ko] - C:\WINDOWS\System32\gl-ES [MD5.00000000000000000000000000000000] - |HD| - [22/08/2013 17:36:31] - [0.98 Ko] - C:\WINDOWS\System32\GroupPolicy [MD5.00000000000000000000000000000000] - |D| - [22/08/2013 17:36:31] - [0 Ko] - C:\WINDOWS\System32\GroupPolicyUsers [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\gu-IN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ha-Latn-NG [MD5.EA99A87E98D995DE6E280CF85CEAD413] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.21 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HandwritingSystemToastIcon.contrast-white.png [MD5.B8E586ED92DB703FFA480E254996160E] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.89 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HandwritingSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [261 Ko] - C:\WINDOWS\System32\he-IL [MD5.6E9E9D56B192B2995493E529CFF2BBFE] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.43 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeadphoneSystemToastIcon.contrast-white.png [MD5.7F1E9502267F778F3A8139C35A352190] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.09 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeadphoneSystemToastIcon.png [MD5.202A07E4526B050E22624328E64E0470] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.52 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeadsetSystemToastIcon.contrast-white.png [MD5.1892ACC10CAC009BCAC146AD650ABA58] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.17 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeadsetSystemToastIcon.png [MD5.031713BFD5F30E63336D3CA5D2767BE9] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.79 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HealthSystemToastIcon.contrast-white.png [MD5.C1BD7976C99830E33A713D02374054EC] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.62 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HealthSystemToastIcon.png [MD5.9270BD94661CE72F98F5B0BB9D184D15] - |A| - [15/09/2018 09:28:34] - (.-.) - [256.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HeatCore.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\hi-IN [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [249.5 Ko] - C:\WINDOWS\System32\hr-HR [MD5.11F6F9F31428B7B5F01ED943DEF446EE] - |A| - [08/06/2017 19:24:14] - (.-.) - [269.87 Ko] - (0.0.0.0) - C:\WINDOWS\System32\hsa-thunk64.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [333.5 Ko] - C:\WINDOWS\System32\hu-HU [MD5.E092D70A1D2D6E2CE75071A0A12EC06C] - |A| - [15/09/2018 09:29:24] - (.-.) - [37.8 Ko] - (0.0.0.0) - C:\WINDOWS\System32\HvSocket.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\hy-AM [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:39:06] - [160.64 Ko] - C:\WINDOWS\System32\hydrogen [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [5.36 Ko] - C:\WINDOWS\System32\ias [MD5.C97449B9BDD1AD22CEA6882668AD3AAD] - |A| - [22/03/2012 22:06:12] - (.Copyright © Cambridge Silicon Radio Limited, 2010-12Cambridge Silicon Radio Limited - Csr Icon Resource Library.) - [11751.2 Ko] - (2.1.63.0) - C:\WINDOWS\System32\IconResource.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [36.27 Ko] - C:\WINDOWS\System32\icsxml [MD5.2FF8EEFAAEC9FAE611A587BD6D3C56C7] - |RA| - [18/06/2019 17:38:17] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU I18N DLL.) - [1816.5 Ko] - (61.1.0.0) - C:\WINDOWS\System32\icuin.dll [MD5.18FDD8D8C5BFA9B1767C2BFE97E74090] - |RA| - [15/09/2018 09:28:36] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU Common DLL.) - [1315.5 Ko] - (61.1.0.0) - C:\WINDOWS\System32\icuuc.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\id-ID [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ig-NG [MD5.5C75F3B35EB158BF27B87A5920B77A3E] - |A| - [15/09/2018 09:28:22] - (.-.) - [195 Ko] - (0.0.0.0) - C:\WINDOWS\System32\IHDS.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [25900.42 Ko] - C:\WINDOWS\System32\IME [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [0 Ko] - C:\WINDOWS\System32\inetsrv [MD5.ADDF24D54BB454BF9FC38C9CA8FBDAA5] - |A| - [15/04/2019 17:47:26] - (.-.) - [813.54 Ko] - (0.0.0.0) - C:\WINDOWS\System32\InputHost.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [6936 Ko] - C:\WINDOWS\System32\InputMethod [MD5.8DE9AE82152650C178BF1E24014E8503] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.25 Ko] - (0.0.0.0) - C:\WINDOWS\System32\InputSystemToastIcon.contrast-white.png [MD5.0B9FBD6F3ED617CD36D042D3422F1C2B] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.9 Ko] - (0.0.0.0) - C:\WINDOWS\System32\InputSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [0 Ko] - C:\WINDOWS\System32\Ipmi [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\is-IS [MD5.DCE6D68DA86F44BA0CB70FA7718E2E84] - |A| - [17/03/2016 18:19:22] - (.ProFrager - ?????????? ??? ?????????? arc, 7z, rar, pcf, srep ??????? ? InnoSetup.) - [446 Ko] - (0.6.0.0) - C:\WINDOWS\System32\ISDone.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [353 Ko] - C:\WINDOWS\System32\it-IT [MD5.00000000000000000000000000000000] - |D| - [28/06/2015 10:13:33] - [0 Ko] - C:\WINDOWS\System32\ja [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [297.09 Ko] - C:\WINDOWS\System32\ja-jp [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ka-GE [MD5.59C58BDBF469FDCF911F67F9240F8A8D] - |A| - [19/12/2018 17:43:08] - (.-.) - [122.55 Ko] - (0.0.0.0) - C:\WINDOWS\System32\kapp_ci.sbin [MD5.B38540EBF0BC894204363F39387A6B1F] - |A| - [19/12/2018 17:43:08] - (.-.) - [117.39 Ko] - (0.0.0.0) - C:\WINDOWS\System32\kapp_si.sbin [MD5.23AC7515B6D8A794BCC01B582F044078] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.82 Ko] - (0.0.0.0) - C:\WINDOWS\System32\KeyboardSystemToastIcon.contrast-white.png [MD5.3DF873E16CCEA9B42857FB5FA085CB00] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.51 Ko] - (0.0.0.0) - C:\WINDOWS\System32\KeyboardSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\kk-KZ [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\km-KH [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\kn-IN [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [242.5 Ko] - C:\WINDOWS\System32\ko-KR [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\kok-IN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ku-Arab-IQ [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ky-KG [MD5.9451D4436E2EA67EB33FCC764E4AABED] - |A| - [15/09/2018 09:28:39] - (.-.) - [186.29 Ko] - (0.0.0.0) - C:\WINDOWS\System32\LaptopPlugInToastImg.gif [MD5.F0CC83E1BA7E24F9B3292160C28AECD7] - |A| - [15/09/2018 09:28:22] - (.-.) - [145.56 Ko] - (0.0.0.0) - C:\WINDOWS\System32\LargeRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\lb-LU [MD5.157FB82D7141B18624FF2D42190C97E1] - |A| - [15/09/2018 18:37:58] - (.-.) - [1572 Ko] - (2.6.5.1) - C:\WINDOWS\System32\libcrypto.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [625.17 Ko] - C:\WINDOWS\System32\Licenses [MD5.3A990028C3616E00E7CA95A10408B80C] - |A| - [18/06/2015 04:25:00] - (.(C) 1998-2015 Logitech. - Logitech KMDF Co-Installer (UNICODE).) - [1810.64 Ko] - (5.90.38.0) - C:\WINDOWS\System32\LkmdfCoInst.dll [MD5.7C3788193D1E0F1ACE8B6E9F414FAD41] - |A| - [18/06/2015 04:25:00] - (.(C) 1998-2015 Logitech. - Logitech Bluetooth Co-Installer (UNICODE).) - [61.64 Ko] - (5.90.38.0) - C:\WINDOWS\System32\LMouFiltCoInst.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\lo-LA [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [15374.88 Ko] - C:\WINDOWS\System32\LogFiles [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [245.5 Ko] - C:\WINDOWS\System32\lt-LT [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [247 Ko] - C:\WINDOWS\System32\lv-LV [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [58345.52 Ko] - C:\WINDOWS\System32\Macromed [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:38:29] - [32.68 Ko] - C:\WINDOWS\System32\MailContactsCalendarSync [MD5.7A495CA1402C2F9F5D035092AD808669] - |A| - [15/09/2018 09:29:54] - (.-.) - [0.85 Ko] - (0.0.0.0) - C:\WINDOWS\System32\manage-bde.wsf [MD5.E3B4022FC66BDA5E2E3E6508A36201E5] - |A| - [19/12/2018 17:43:08] - (.Copyright (C) 2013 AMD Inc. - Mantle loader.) - [179.64 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\mantle64.dll [MD5.CFF2171428154864811BAAECEDCEA996] - |A| - [19/12/2018 17:43:08] - (.Copyright (C) 2013 AMD Inc. - Mantle extension library.) - [159.11 Ko] - (25.20.15003.5010) - C:\WINDOWS\System32\mantleaxl64.dll [MD5.6C3157FD2E850739EDEA659D40D0977D] - |A| - [06/10/2017 12:54:20] - (.© Waves Audio Ltd. - MaxxAudio APO.) - [322.8 Ko] - (2.2.9.0) - C:\WINDOWS\System32\MaxxAudioAPO20.dll [MD5.82244FEFCFEB8B4D7CBC8212A614AB5A] - |A| - [06/10/2017 12:54:25] - (.Copyright © 1996-2014 -.) - [2002.13 Ko] - (4.1.1.0) - C:\WINDOWS\System32\MaxxAudioEQ64.dll [MD5.5E41601E848DE59F6DB70DABF12ED06C] - |A| - [06/10/2017 12:54:41] - (.Copyright (c) 2006-2017 Creative Technology Ltd. - Creative Audio Processing Object Module.) - [2132.49 Ko] - (1.2.65.10) - C:\WINDOWS\System32\MBAPO264.dll [MD5.038B6660B2D2F80587F36FC40CD27BA2] - |A| - [15/04/2019 17:47:45] - (.-.) - [840 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MBR2GPT.EXE [MD5.92631A6D0FF749A7DF53F2900F8AF171] - |A| - [06/10/2017 12:54:43] - (.Copyright (c) 2006-2010 Creative Technology Ltd. - Audio Processing Object Chaining Module.) - [400.42 Ko] - (1.0.0.270) - C:\WINDOWS\System32\MBWrp64.dll [MD5.F23EB28468FC8B62AF941308EC30387F] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.25 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MediaSystemToastIcon.contrast-white.png [MD5.6E27512E38D598E0A60F8E5ADCF032CD] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.83 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MediaSystemToastIcon.png [MD5.69D04DE701CF1E8CE69C65D1671D2B3F] - |A| - [15/09/2018 09:28:22] - (.-.) - [107.46 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MediumRoom.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\mi-NZ [MD5.00000000000000000000000000000000] - |D| - [15/04/2019 17:54:36] - [1126.49 Ko] - C:\WINDOWS\System32\Microsoft [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [6495.81 Ko] - C:\WINDOWS\System32\migration [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [47536.93 Ko] - C:\WINDOWS\System32\migwiz [MD5.4B4050855236C4656EEBDF225E3480FA] - |A| - [27/02/2016 18:28:19] - (.© 1999-2009 Logitech. - Logitech Force Feedback Driver.) - [321.01 Ko] - (5.8.141.0) - C:\WINDOWS\System32\MijFrc.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\mk-MK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ml-IN [MD5.C8BF077B236ED2803347BD95DE29BF68] - |A| - [15/09/2018 09:31:36] - (.-.) - [3.03 Ko] - (0.0.0.0) - C:\WINDOWS\System32\mmc.exe.config [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\mn-MN [MD5.B43E43FFFDD0F06A6925C7C89594042B] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.35 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MouseSystemToastIcon.contrast-white.png [MD5.5D2F0D3E50BF1129D260AC1405FF2A18] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.06 Ko] - (0.0.0.0) - C:\WINDOWS\System32\MouseSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\mr-IN [MD5.00000000000000000000000000000000] - |D| - [24/10/2014 12:49:01] - [0 Ko] - C:\WINDOWS\System32\MRT [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ms-MY [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [45.5 Ko] - C:\WINDOWS\System32\MSDRM [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [4532.28 Ko] - C:\WINDOWS\System32\MsDtc [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\mt-MT [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [20.55 Ko] - C:\WINDOWS\System32\MUI [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [34.35 Ko] - C:\WINDOWS\System32\my-mm [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [316.5 Ko] - C:\WINDOWS\System32\nb-NO [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [640 Ko] - C:\WINDOWS\System32\NDF [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ne-NP [MD5.346FE111845AE42343348CE5978F857C] - |A| - [06/08/2016 16:55:26] - (.-.) - [9.7 Ko] - (0.0.0.0) - C:\WINDOWS\System32\netrtwlanu.cat [MD5.31ACF68B1E8232410CE93EAAD8A26FBA] - |A| - [06/08/2016 16:55:26] - (.-.) - [35.56 Ko] - (0.0.0.0) - C:\WINDOWS\System32\netrtwlanu.inf [MD5.88A4966178CBD12D389605C1B46BD51E] - |A| - [28/07/2017 23:24:04] - (.-.) - [358 Ko] - (0.0.0.0) - C:\WINDOWS\System32\NetSetupMig.log [MD5.C146E873B22C3B300B21A859FE66C27A] - |A| - [15/09/2018 09:29:23] - (.-.) - [21.15 Ko] - (0.0.0.0) - C:\WINDOWS\System32\NetTrace.PLA.Diagnostics.xml [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [51 Ko] - C:\WINDOWS\System32\networklist [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [347.5 Ko] - C:\WINDOWS\System32\nl-NL [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\nn-NO [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\nso-ZA [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:50] - [3781.5 Ko] - C:\WINDOWS\System32\Nui [MD5.7F3D6C958422727C4EA7C247E4743C8F] - |A| - [15/09/2018 18:39:06] - (.-.) - [17.14 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OEMDefaultAssociations.xml [MD5.F3DC097E834C1A11F2BEDFD429C644A9] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.41 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OkDone_80.contrast-black.png [MD5.BFE1CCA08FEFC8A3422F7DA615567D75] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.43 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OkDone_80.contrast-white.png [MD5.F3DC097E834C1A11F2BEDFD429C644A9] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.41 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OkDone_80.png [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [14943.47 Ko] - C:\WINDOWS\System32\oobe [MD5.2AD7B4F3C8D2BB686D231EDFF404B7A4] - |A| - [30/08/2012 14:31:10] - (.Copyright (C) 2000-2006 - Standard OpenAL(TM) Implementation.) - [120.02 Ko] - (6.14.357.24) - C:\WINDOWS\System32\OpenAL32.dll [MD5.5A4FB0E69F0064C2CAA41C2650D15F5E] - |A| - [12/07/2015 19:26:50] - (.-.) - [190.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OpenAL64.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:59] - [3554.5 Ko] - C:\WINDOWS\System32\OpenSSH [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\or-IN [MD5.459FB33AA2114A28C5932FEAA115B072] - |A| - [15/09/2018 09:28:22] - (.-.) - [45.82 Ko] - (0.0.0.0) - C:\WINDOWS\System32\OutdoorAudioEnvironment.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\pa-Arab-PK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\pa-IN [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [1123.97 Ko] - C:\WINDOWS\System32\PerceptionSimulation [MD5.BBD5AA48654A4CC35580A91BE52BF68E] - |A| - [15/09/2018 09:35:59] - (.-.) - [130.55 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfc009.dat [MD5.A67C423D03D99226E4748CB63A6F76D4] - |A| - [15/09/2018 18:37:17] - (.-.) - [146.32 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfc00C.dat [MD5.DE68725DDCFC264192670CA18E8B4333] - |A| - [28/06/2015 10:15:14] - (.-.) - [132.68 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfc011.dat [MD5.1E60BC5E525063B96078DF17FBD3C4E1] - |A| - [15/09/2018 09:35:59] - (.-.) - [32.64 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfd009.dat [MD5.9F9AF8517189B0D61B2615007E071084] - |A| - [15/09/2018 18:37:17] - (.-.) - [39.74 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfd00C.dat [MD5.32BC2E0CC95E2DCEE25B15BFB82D07B8] - |A| - [28/06/2015 10:15:14] - (.-.) - [32.58 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfd011.dat [MD5.F6AA41F4CB98B209062BD253A45956F3] - |A| - [15/09/2018 09:35:59] - (.-.) - [685.98 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfh009.dat [MD5.49222A6C30B99F37D02CE88C2E539111] - |A| - [15/09/2018 18:37:17] - (.-.) - [773.21 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfh00C.dat [MD5.D1BFD71AC7A92E5E75D05C250E0E42E2] - |A| - [28/06/2015 10:15:14] - (.-.) - [486.39 Ko] - (0.0.0.0) - C:\WINDOWS\System32\perfh011.dat [MD5.94F437096414836F33AF645BA5650EC6] - |A| - [15/04/2019 19:05:06] - (.-.) - [1731.66 Ko] - (0.0.0.0) - C:\WINDOWS\System32\PerfStringBackup.INI [MD5.79D34E3B62076D4C875C748F5BE71ECA] - |A| - [15/09/2018 09:28:22] - (.-.) - [2.21 Ko] - (0.0.0.0) - C:\WINDOWS\System32\PhoneSystemToastIcon.contrast-white.png [MD5.4D9495349D00D9AD907F227FF51F289F] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.92 Ko] - (0.0.0.0) - C:\WINDOWS\System32\PhoneSystemToastIcon.png [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [346.5 Ko] - C:\WINDOWS\System32\pl-PL [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [437 Ko] - C:\WINDOWS\System32\PointOfService [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [420.74 Ko] - C:\WINDOWS\System32\Printing_Admin_Scripts [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [0 Ko] - C:\WINDOWS\System32\ProximityToast [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\prs-AF [MD5.007893E8374C766471239EB291BA8C17] - |A| - [15/09/2018 09:28:29] - (.-.) - [4.05 Ko] - (0.0.0.0) - C:\WINDOWS\System32\psmodulediscoveryprovider.mof [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [341.5 Ko] - C:\WINDOWS\System32\pt-BR [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [343.5 Ko] - C:\WINDOWS\System32\pt-PT [MD5.9447AD0CD3C46A5C0D3F6AD74F5142CA] - |A| - [30/06/2014 16:08:50] - (.Copyright © 2001-2014 Python Software Foundation. Copyright © 2000 BeOpen.com. Copyright © 1995-2001 CNRI. Copyright © 1991-1995 SMC. - Python Core.) - [2939 Ko] - (2.7.8150.1013) - C:\WINDOWS\System32\python27.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\quc-Latn-GT [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\quz-PE [MD5.D2E421FE649BD5FA8B72AB2E802C0D2B] - |A| - [19/12/2018 17:43:08] - (.(c) Advanced Micro Devices, Inc. - AMD RapidFire.) - [557.61 Ko] - (1.2.1.62) - C:\WINDOWS\System32\Rapidfire64.dll [MD5.A10AFBFE93D52092222BB378FCB104D7] - |A| - [19/12/2018 17:43:08] - (.(c) Advanced Micro Devices, Inc. - AMD Rapid Fire Server.) - [45.11 Ko] - (1.2.0.15) - C:\WINDOWS\System32\RapidFireServer64.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [23.75 Ko] - C:\WINDOWS\System32\ras [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [0 Ko] - C:\WINDOWS\System32\RasToast [MD5.E713275BCE55BBE5B7E4B37D482C66F7] - |A| - [12/04/2016 07:20:52] - (.Copyright © 2014 Razer Inc. All rights reserved - RazerCoinstaller.) - [93.16 Ko] - (0.0.0.5) - C:\WINDOWS\System32\RazerCoinstaller.dll [MD5.2210F24EDC6E80B1D311B2C3641DE9FA] - |A| - [23/08/2019 03:44:52] - (.-.) - [1983.5 Ko] - (1.0.1907.17001) - C:\WINDOWS\System32\rdpnano.dll [MD5.07FA6595AEF88D7E31BF8F37F3B5F22E] - |A| - [15/09/2018 09:39:06] - (.Copyright (C) 2009 - RemoteFX Helper.) - [106.5 Ko] - (1.1.0.0) - C:\WINDOWS\System32\RDVGHelper.exe [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [2.19 Ko] - C:\WINDOWS\System32\Recovery [MD5.826549DF7B1333179BA8CA939B12DAD3] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.58 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RemoteSystemToastIcon.contrast-white.png [MD5.B4DEEC96F9DF6961D5DE054F11BF9C2B] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.1 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RemoteSystemToastIcon.png [MD5.93915F385A4EED6C0FBEE364EA90CE56] - |A| - [15/09/2018 09:29:25] - (.-.) - [9.09 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ResPriHMImageList [MD5.93915F385A4EED6C0FBEE364EA90CE56] - |A| - [15/09/2018 09:29:25] - (.-.) - [9.09 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ResPriHMImageListLowCost [MD5.39A2449AFF6ABAD80B97EA7C7CEB3F8E] - |A| - [15/09/2018 09:29:25] - (.-.) - [8.53 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ResPriImageList [MD5.39A2449AFF6ABAD80B97EA7C7CEB3F8E] - |A| - [15/09/2018 09:29:25] - (.-.) - [8.53 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ResPriImageListLowCost [MD5.831C579709F4761E4AB7053FCF4176EC] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.74 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartNowPower_80.contrast-black.png [MD5.DF286186041C6BF73C5DC21CEEEFFED5] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.77 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartNowPower_80.contrast-white.png [MD5.831C579709F4761E4AB7053FCF4176EC] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.74 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartNowPower_80.png [MD5.AE9FE55FED83149715734CB83339055A] - |A| - [23/08/2019 03:45:11] - (.-.) - [1.07 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartTonight_80.png [MD5.AE9FE55FED83149715734CB83339055A] - |A| - [23/08/2019 03:45:11] - (.-.) - [1.07 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartTonight_80_contrast-black.png [MD5.891AD355AB777A95695FC8A8A623A614] - |A| - [23/08/2019 03:45:11] - (.-.) - [0.98 Ko] - (0.0.0.0) - C:\WINDOWS\System32\RestartTonight_80_contrast-white.png [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [0.07 Ko] - C:\WINDOWS\System32\restore [MD5.D518E801551E975B26ECA37E7E1D3086] - |A| - [06/10/2017 12:54:53] - (.© 2008,2009 Dolby Laboratories, Inc. - PCEE3 DAA Control Panel x64.) - [314.17 Ko] - (6.0.6001.18) - C:\WINDOWS\System32\RP3DAA64.dll [MD5.23212C53F5D8DE747F86463B3B5A183F] - |A| - [06/10/2017 12:54:53] - (.© 2008,2009 Dolby Laboratories, Inc. - PCEE3 DHT Control Panel x64.) - [314.17 Ko] - (6.0.6001.18) - C:\WINDOWS\System32\RP3DHT64.dll [MD5.AC1AA9F3B1D8FDF8882DC6AB8A10D64A] - |A| - [06/10/2017 12:54:57] - (.©2009 Dolby Laboratories, Inc. - Dolby PCEE3 COM DLL x64.) - [209.8 Ko] - (6.1.6001.33) - C:\WINDOWS\System32\RTEED64A.dll [MD5.FFE5A1AD38CFF13815D962F228C237C8] - |A| - [06/10/2017 12:54:57] - (.©2009 Dolby Laboratories, Inc. - Dolby PCEE3 GFX APO x64.) - [86.27 Ko] - (6.1.6001.33) - C:\WINDOWS\System32\RTEEG64A.dll [MD5.A75237F8A8BA4F19A7A8712FEE428A84] - |A| - [06/10/2017 12:54:57] - (.©2009 Dolby Laboratories, Inc. - Dolby PCEE3 LFX APO x64.) - [108.38 Ko] - (6.1.6001.33) - C:\WINDOWS\System32\RTEEL64A.dll [MD5.44BAE5798495ADF0E3006DFCFD35373F] - |A| - [06/10/2017 12:54:58] - (.©2009 Dolby Laboratories, Inc. - Dolby PCEE3 Control Panel x64.) - [378.23 Ko] - (6.1.6001.33) - C:\WINDOWS\System32\RTEEP64A.dll [MD5.8AA05F502FCF586AFEA8E5C4AFB19AEB] - |A| - [15/09/2018 09:28:46] - (.-.) - [56.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\runexehelper.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\rw-RW [MD5.56B23318DE09559AE0A7EA51F068AC3B] - |A| - [19/12/2018 17:43:08] - (.-.) - [150.77 Ko] - (0.0.0.0) - C:\WINDOWS\System32\samu_krnl_ci.sbin [MD5.A769B352B827590EA4CCAC16E6269E33] - |A| - [19/12/2018 17:43:08] - (.-.) - [135.58 Ko] - (0.0.0.0) - C:\WINDOWS\System32\samu_krnl_isv_ci.sbin [MD5.5C18CD22BE4628865FCB63337A6E5EF6] - |A| - [15/09/2018 09:29:46] - (.-.) - [10.18 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ScavengeSpace.xml [MD5.2F24BC74DCB28FE032C1596755385917] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.53 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ScheduleTime_80.contrast-black.png [MD5.E72B1B6800DE45AA9AE7E10F899E5999] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.54 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ScheduleTime_80.contrast-white.png [MD5.2F24BC74DCB28FE032C1596755385917] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.53 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ScheduleTime_80.png [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\sd-Arab-PK [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [6.92 Ko] - C:\WINDOWS\System32\SecureBootUpdates [MD5.D732A2976A4DAC803BF41AD0819A2A45] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1476.75 Ko] - (8.17.10.1460) - C:\WINDOWS\System32\SET103.tmp [MD5.AAAB52742C85E2241C699264CB778E4D] - |A| - [22/05/2018 16:54:14] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1622.13 Ko] - (25.20.15002.58) - C:\WINDOWS\System32\SET1065.tmp [MD5.DAEF813A362C35C064CFA9936BFA5DBB] - |A| - [13/09/2016 05:40:56] - (.AMD. - CoInstaller DLL.) - [880.52 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET12A8.tmp [MD5.57FD323C102C1B216DA3FED293C4E623] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [9661.27 Ko] - (8.14.10.552) - C:\WINDOWS\System32\SET141B.tmp [MD5.6B5691287255E0800FDF7470C3F253F9] - |A| - [22/05/2018 16:54:14] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1591.11 Ko] - (25.20.14011.9004) - C:\WINDOWS\System32\SET1435.tmp [MD5.A0CF2EFAD62C5EA332F67394843D41F8] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [162.59 Ko] - (8.14.1.6512) - C:\WINDOWS\System32\SET15.tmp [MD5.FB4A842430337E6845603EA6D9131E84] - |A| - [16/05/2016 03:38:32] - (.AMD. - CoInstaller DLL.) - [845 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET1D22.tmp [MD5.3836F3868E18D334EE546D5144C4F9F7] - |A| - [06/02/2018 17:27:34] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1436.87 Ko] - (23.20.15017.3010) - C:\WINDOWS\System32\SET20B5.tmp [MD5.D18B170552A452AEC30855317066C078] - |A| - [13/09/2016 05:40:56] - (.AMD. - CoInstaller DLL.) - [880.53 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET22B3.tmp [MD5.8C729C82C313BCF35D4498AB5B1301F2] - |A| - [06/02/2018 17:35:14] - (.AMD. - CoInstaller DLL.) - [1217.37 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET26A5.tmp [MD5.55B0411D9AB4B1328876C314BDD7A1A3] - |A| - [13/12/2018 01:39:28] - (.AMD. - CoInstaller DLL.) - [1558.61 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET2B23.tmp [MD5.CA8088DC3E686D108612D26FAA708F7F] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [10555.66 Ko] - (8.17.10.671) - C:\WINDOWS\System32\SET2BCD.tmp [MD5.B0613FCF96FC4C75B0B6EE522FAC48FB] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [10043.78 Ko] - (8.14.10.558) - C:\WINDOWS\System32\SET3839.tmp [MD5.39A24B7DC7900202FA9F7A60286873DC] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [9568.91 Ko] - (8.14.10.552) - C:\WINDOWS\System32\SET4352.tmp [MD5.051FD7C3E5F20D481780594D0F885D03] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [172.7 Ko] - (8.14.1.6512) - C:\WINDOWS\System32\SET4954.tmp [MD5.895C3726A59C9257F7F48A2B33904EB1] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [10710.89 Ko] - (8.17.10.682) - C:\WINDOWS\System32\SET4A01.tmp [MD5.DDD26C52551A90CF251F4710B605E19F] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1501.48 Ko] - (8.17.10.1460) - C:\WINDOWS\System32\SET4A13.tmp [MD5.81542DED59D491A722B167A203E6D4E9] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [9568.91 Ko] - (8.14.10.552) - C:\WINDOWS\System32\SET4A31.tmp [MD5.48B4CCCB16D2ABDA1F0D03B1086D7260] - |A| - [08/06/2017 19:24:06] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1505.02 Ko] - (22.19.676.0) - C:\WINDOWS\System32\SET4B4C.tmp [MD5.A5A645EA0789494B098FD62311ED6D58] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [10438.99 Ko] - (8.17.10.671) - C:\WINDOWS\System32\SET514E.tmp [MD5.251BF862C56BF8B5510D3AC5DB96CF3A] - |A| - [13/09/2016 05:33:58] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1480.9 Ko] - (22.19.157.3) - C:\WINDOWS\System32\SET5CA6.tmp [MD5.AD6084607EEDD395688B74F01A465B2F] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [10450.06 Ko] - (8.17.10.671) - C:\WINDOWS\System32\SET5E88.tmp [MD5.F65B30E71C313FD80ED7C457DFF5CB97] - |A| - [08/06/2017 19:24:06] - (.Copyright (C) 2008-2017 Advanced Micro Devices, Inc. - ADL.) - [1436.86 Ko] - (23.20.15002.11) - C:\WINDOWS\System32\SET5FDD.tmp [MD5.2C0B8AED2EB8FFD9EDA77FD79569987A] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [9568.91 Ko] - (8.14.10.552) - C:\WINDOWS\System32\SET60A9.tmp [MD5.C5C35215242ECED89688A3E347B3CAB8] - |A| - [16/05/2016 03:38:32] - (.AMD. - CoInstaller DLL.) - [853.52 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET60F1.tmp [MD5.691BEFF3502CB8AD85851C32AC49C988] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [176.2 Ko] - (8.14.1.6521) - C:\WINDOWS\System32\SET6105.tmp [MD5.6F99BB9849DEB492566E93028C6B3979] - |A| - [14/04/2017 21:33:14] - (.AMD. - CoInstaller DLL.) - [902.9 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET62ED.tmp [MD5.F45DFD99BB4D41C70250ADB32397CC0A] - |A| - [22/05/2018 16:54:14] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1442.87 Ko] - (24.20.11016.4) - C:\WINDOWS\System32\SET6359.tmp [MD5.E0CE79A5648E0F07E07DB8039C707584] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1510.59 Ko] - (8.17.10.1474) - C:\WINDOWS\System32\SET635A.tmp [MD5.BC8F30C73465815B4363FF9D23742A02] - |A| - [10/12/2017 22:07:42] - (.AMD. - CoInstaller DLL.) - [1211.87 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET648D.tmp [MD5.1DB11AFFF5A5D5736A0B41ACB5CD1ED3] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [162.59 Ko] - (8.14.1.6512) - C:\WINDOWS\System32\SET65EA.tmp [MD5.01879215F3D102355467A4E66C6ACD8F] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1474.75 Ko] - (8.17.10.1460) - C:\WINDOWS\System32\SET664C.tmp [MD5.57FD323C102C1B216DA3FED293C4E623] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [9661.27 Ko] - (8.14.10.552) - C:\WINDOWS\System32\SET696F.tmp [MD5.8756D1268227FC28CF5266610E6192C5] - |A| - [13/09/2016 05:33:58] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1311.02 Ko] - (21.19.164.257) - C:\WINDOWS\System32\SET6A2F.tmp [MD5.5D824A389A068C151F0A673204593130] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [9393.35 Ko] - (8.14.10.546) - C:\WINDOWS\System32\SET6D10.tmp [MD5.83478DB8ED3A6172C7E9031BEC3CA325] - |A| - [01/04/2016 00:34:20] - (.Copyright (C) 2008-2015 Advanced Micro Devices, Inc. - ADL.) - [1255.02 Ko] - (7.16.15.1302) - C:\WINDOWS\System32\SET6DD0.tmp [MD5.A0CF2EFAD62C5EA332F67394843D41F8] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [162.59 Ko] - (8.14.1.6512) - C:\WINDOWS\System32\SET779C.tmp [MD5.42CA0A3C1EEECF9E0661C3D4D78C6470] - |A| - [25/07/2016 22:53:40] - (.AMD. - CoInstaller DLL.) - [854.02 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET795E.tmp [MD5.CA8088DC3E686D108612D26FAA708F7F] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [10555.66 Ko] - (8.17.10.671) - C:\WINDOWS\System32\SET7AB6.tmp [MD5.DD2A279252E968234CDE259C56D4E2EC] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [11460.74 Ko] - (8.17.10.661) - C:\WINDOWS\System32\SET7B1B.tmp [MD5.D732A2976A4DAC803BF41AD0819A2A45] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1476.75 Ko] - (8.17.10.1460) - C:\WINDOWS\System32\SET7BA7.tmp [MD5.7883F87D05F3DE690863B8BB40A53D12] - |A| - [13/09/2016 05:33:58] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1480.9 Ko] - (22.19.162.4) - C:\WINDOWS\System32\SET7DC5.tmp [MD5.A23C6B34B0EB1102CAECE5E6175FC9BA] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [8892.14 Ko] - (8.14.10.533) - C:\WINDOWS\System32\SET7E55.tmp [MD5.56B503EFB094C951ADE138BEA583F127] - |A| - [14/04/2017 21:33:14] - (.AMD. - CoInstaller DLL.) - [902.9 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET8326.tmp [MD5.8374A1EC6DDA8BBCDADC4D43DE0CFFB8] - |A| - [16/05/2016 03:38:32] - (.AMD. - CoInstaller DLL.) - [845 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET842D.tmp [MD5.25374B9DEBE4191254FD56A1C0DD7FCA] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [10456.09 Ko] - (8.17.10.671) - C:\WINDOWS\System32\SET86E2.tmp [MD5.051FD7C3E5F20D481780594D0F885D03] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [172.7 Ko] - (8.14.1.6512) - C:\WINDOWS\System32\SET8EBC.tmp [MD5.DDD26C52551A90CF251F4710B605E19F] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1501.48 Ko] - (8.17.10.1460) - C:\WINDOWS\System32\SET8F4D.tmp [MD5.F65B30E71C313FD80ED7C457DFF5CB97] - |A| - [08/06/2017 19:24:06] - (.Copyright (C) 2008-2017 Advanced Micro Devices, Inc. - ADL.) - [1436.86 Ko] - (23.20.15002.11) - C:\WINDOWS\System32\SET9273.tmp [MD5.474F1C56E80D2383F7DD0A2C2D1DC104] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [13001.51 Ko] - (8.17.10.644) - C:\WINDOWS\System32\SET92E7.tmp [MD5.225290A7F016F3B4DB2EA3D2ABA61BAE] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [158.97 Ko] - (8.14.1.6505) - C:\WINDOWS\System32\SET9306.tmp [MD5.E5070B7A821D8AA51A10164FF2DD91B0] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1503.48 Ko] - (8.17.10.1452) - C:\WINDOWS\System32\SET93A6.tmp [MD5.BC8F30C73465815B4363FF9D23742A02] - |A| - [10/12/2017 22:07:42] - (.AMD. - CoInstaller DLL.) - [1211.87 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET9BF0.tmp [MD5.FB4A842430337E6845603EA6D9131E84] - |A| - [16/05/2016 03:38:32] - (.AMD. - CoInstaller DLL.) - [845 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET9C39.tmp [MD5.C5C35215242ECED89688A3E347B3CAB8] - |A| - [16/05/2016 03:38:32] - (.AMD. - CoInstaller DLL.) - [853.52 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SET9F26.tmp [MD5.BF3AB912CA2A818C4D843DA997C82550] - |A| - [13/09/2016 05:33:58] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1324.52 Ko] - (21.19.397.32768) - C:\WINDOWS\System32\SET9FCC.tmp [MD5.6EDD0BC39C18A4B027BDDE066D5F664F] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [9303.34 Ko] - (8.14.10.546) - C:\WINDOWS\System32\SETA148.tmp [MD5.AA5FD29D2179C9C49F869E5566D52918] - |A| - [01/04/2016 00:34:20] - (.Copyright (C) 2008-2015 Advanced Micro Devices, Inc. - ADL.) - [1246.5 Ko] - (7.16.15.1302) - C:\WINDOWS\System32\SETA1F9.tmp [MD5.C23EAB2A4836EEB57933A6568B34F76B] - |A| - [01/04/2016 00:38:48] - (.AMD. - CoInstaller DLL.) - [853.52 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SETA457.tmp [MD5.F569A19A82BA5DBFA34F82720ADD7380] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [158.97 Ko] - (8.14.1.6489) - C:\WINDOWS\System32\SETA66C.tmp [MD5.AF05AFD2CF316C046CC5CBF8E5288D8C] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1483.63 Ko] - (8.17.10.1429) - C:\WINDOWS\System32\SETA6FC.tmp [MD5.675C015B2BE03A294B0F437577C985ED] - |A| - [08/06/2017 19:24:06] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1420.88 Ko] - (23.20.788.0) - C:\WINDOWS\System32\SETA726.tmp [MD5.0F29A253AAE587D0A215FFDA6F41BD97] - |A| - [13/09/2016 05:40:56] - (.AMD. - CoInstaller DLL.) - [879.53 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SETA7CD.tmp [MD5.7FD63045A17A011B2C1BD91E8BE0112A] - |A| - [17/01/2017 15:50:08] - (.AMD. - CoInstaller DLL.) - [901.52 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SETA896.tmp [MD5.7B2F1221429D85ED31F7EAFC8C53EE86] - |A| - [22/05/2018 16:54:14] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1590.48 Ko] - (24.20.13019.1008) - C:\WINDOWS\System32\SETAC60.tmp [MD5.8B098D6FF0045378E241A0C2C4223CFA] - |A| - [13/09/2016 05:33:58] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1481.49 Ko] - (22.19.165.512) - C:\WINDOWS\System32\SETAE76.tmp [MD5.C3EB3DFF61B7082679D757C5C1405367] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [11353.3 Ko] - (8.17.10.661) - C:\WINDOWS\System32\SETB21F.tmp [MD5.B963CEF88091E8B58CD4C5F3B5493066] - |A| - [14/04/2017 21:33:14] - (.AMD. - CoInstaller DLL.) - [903.49 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SETB2EA.tmp [MD5.9C84C40B00F30FE4EFDCD34BA0685796] - |A| - [13/09/2016 05:33:58] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1323.9 Ko] - (21.19.384.0) - C:\WINDOWS\System32\SETB63D.tmp [MD5.222B4AE10B43965E688B5C19F55D4AF8] - |A| - [13/09/2016 05:40:56] - (.AMD. - CoInstaller DLL.) - [863.02 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SETB965.tmp [MD5.81542DED59D491A722B167A203E6D4E9] - |A| - [24/11/2015 09:36:08] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon Video Acceleration Universal Driver.) - [9568.91 Ko] - (8.14.10.552) - C:\WINDOWS\System32\SETBFFD.tmp [MD5.AAD048A2E23F57FDB900D937A4788A97] - |A| - [08/06/2017 19:24:06] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1430.02 Ko] - (23.20.782.259) - C:\WINDOWS\System32\SETC53C.tmp [MD5.F193016F7B61057DD82AFF00530FEAEF] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [148.99 Ko] - (8.14.1.6505) - C:\WINDOWS\System32\SETC66A.tmp [MD5.305046C7C2563B5A24DB2DDB3DF4A3A5] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1481.8 Ko] - (8.17.10.1452) - C:\WINDOWS\System32\SETC6DC.tmp [MD5.E0745DF9F639B8C6CC3754DCAB0FB2AD] - |A| - [27/10/2017 20:55:34] - (.AMD. - CoInstaller DLL.) - [1212.52 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SETCA08.tmp [MD5.87E90477EB41A83011D6E8CB1F5B61D2] - |A| - [11/08/2016 17:45:14] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1511.72 Ko] - (8.17.10.1474) - C:\WINDOWS\System32\SETCDFF.tmp [MD5.91CD0EC8D9FC689F2EF0D44C49B38E8D] - |A| - [11/08/2016 17:38:24] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [10713.01 Ko] - (8.17.10.682) - C:\WINDOWS\System32\SETCE20.tmp [MD5.5FF2D0BB0F7E2D3BCEEA44F62AEE7BE3] - |A| - [24/11/2015 09:36:34] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atiuxpag.dll.) - [162.59 Ko] - (8.14.1.6512) - C:\WINDOWS\System32\SETCE62.tmp [MD5.A7F2BEAFF9BA24197F9323D9D8407CFC] - |A| - [24/11/2015 09:35:16] - (.Copyright (C) 1998-2012 AMD Inc. - aticfx64.dll.) - [1479.8 Ko] - (8.17.10.1460) - C:\WINDOWS\System32\SETD338.tmp [MD5.F45DFD99BB4D41C70250ADB32397CC0A] - |A| - [22/05/2018 16:54:14] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1442.87 Ko] - (24.20.11016.4) - C:\WINDOWS\System32\SETDDB7.tmp [MD5.AD6084607EEDD395688B74F01A465B2F] - |A| - [24/11/2015 09:35:38] - (.Copyright (C) 1998-2011 AMD Inc. - atidxx64.dll.) - [10450.06 Ko] - (8.17.10.671) - C:\WINDOWS\System32\SETDF9E.tmp [MD5.18683DF42BFC1A9515303C6DDB01669C] - |A| - [22/05/2018 16:54:20] - (.2002-2012 - Graphics DEM.) - [465.12 Ko] - (4.5.6914.35260) - C:\WINDOWS\System32\SETEA1.tmp [MD5.03750AC04201373CA2AD644F2B9D3327] - |A| - [08/06/2017 19:24:06] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1504.4 Ko] - (22.19.666.1) - C:\WINDOWS\System32\SETEB16.tmp [MD5.0E4BB645388316165B2EAACE65565DDE] - |A| - [08/06/2017 19:24:06] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1481.49 Ko] - (22.19.171.1) - C:\WINDOWS\System32\SETEC51.tmp [MD5.027E1DC24ABA01BFFDD33A5DD7E27C3F] - |A| - [08/06/2017 19:24:06] - (.Copyright (C) 2008-2016 Advanced Micro Devices, Inc. - ADL.) - [1506.41 Ko] - (22.19.662.4) - C:\WINDOWS\System32\SETEDAA.tmp [MD5.9DD5FBC9615DCAD73C83E623C48B2020] - |A| - [06/02/2018 17:27:34] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1437.47 Ko] - (23.20.15033.5003) - C:\WINDOWS\System32\SETEE05.tmp [MD5.D86306E0DC601E89E31E52B1D929B9C8] - |A| - [27/07/2017 01:05:50] - (.AMD. - CoInstaller DLL.) - [911.41 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SETF47E.tmp [MD5.ADEE0E51CA9B98B74BA3FA12C8256885] - |A| - [27/07/2017 01:05:50] - (.AMD. - CoInstaller DLL.) - [902.9 Ko] - (1.0.5.9) - C:\WINDOWS\System32\SETF7B6.tmp [MD5.A8308D2F3DDE0745E8B678BF69A2ECD0] - |A| - [15/09/2018 09:28:26] - (.-.) - [8 Ko] - (0.0.0.0) - C:\WINDOWS\System32\settings.dat [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [68.05 Ko] - C:\WINDOWS\System32\Sgrm [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [2304 Ko] - C:\WINDOWS\System32\ShellExperiences [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [23.7 Ko] - C:\WINDOWS\System32\si-lk [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [259 Ko] - C:\WINDOWS\System32\sk-SK [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [250.5 Ko] - C:\WINDOWS\System32\sl-SI [MD5.00000000000000000000000000000000] - |D| - [15/04/2019 18:47:00] - [60456.4 Ko] - C:\WINDOWS\System32\SleepStudy [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [52.14 Ko] - C:\WINDOWS\System32\slmgr [MD5.DAC275ABAAD2B689D7BB3685E4032072] - |A| - [15/09/2018 09:28:22] - (.-.) - [68.15 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SmallRoom.bin [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 08:09:26] - [13737.02 Ko] - C:\WINDOWS\System32\SMI [MD5.55121989BE7B289813D419BA0FDEE8B7] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.9 Ko] - (0.0.0.0) - C:\WINDOWS\System32\Snooze_80.contrast-black.png [MD5.E30B7D226E7B5B0EC2B9FC2316694ECC] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.88 Ko] - (0.0.0.0) - C:\WINDOWS\System32\Snooze_80.contrast-white.png [MD5.55121989BE7B289813D419BA0FDEE8B7] - |A| - [15/09/2018 09:28:39] - (.-.) - [0.9 Ko] - (0.0.0.0) - C:\WINDOWS\System32\Snooze_80.png [MD5.DE3EAAF17BC934C77C4FC0C626EEA03B] - |A| - [15/09/2018 09:28:22] - (.-.) - [1.48 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SpeakersSystemToastIcon.contrast-white.png [MD5.3308374DB8D20CFDA4D4204E2B5E559E] - |A| - [15/09/2018 09:28:22] - (.-.) - [0.88 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SpeakersSystemToastIcon.png [MD5.D7C806511EE5CD3E3F9FB0D26957EBED] - |A| - [15/09/2018 09:29:24] - (.-.) - [37.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SpectrumSyncClient.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [7564.02 Ko] - C:\WINDOWS\System32\Speech [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [12402.73 Ko] - C:\WINDOWS\System32\Speech_OneCore [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [159560.1 Ko] - C:\WINDOWS\System32\spool [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [14476.73 Ko] - C:\WINDOWS\System32\spp [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [23.61 Ko] - C:\WINDOWS\System32\sppui [MD5.168F72AF08D66D60F2BE5CC67400A744] - |A| - [28/07/2017 23:26:24] - (.-.) - [64 Ko] - (0.0.0.0) - C:\WINDOWS\System32\spu_storage.bin [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\sq-AL [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\sr-Cyrl-BA [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\sr-Cyrl-RS [MD5.00000000000000000000000000000000] - |D| - [16/07/2016 13:47:48] - [0 Ko] - C:\WINDOWS\System32\sr-Latn-CS [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [372.93 Ko] - C:\WINDOWS\System32\sr-Latn-RS [MD5.2E00E08420875FAE0B173C6A34C2A575] - |A| - [15/09/2018 09:29:25] - (.-.) - [18.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\srms-apr.dat [MD5.EA8B12C5A67ADC1FE689FF886BD4CB7E] - |A| - [23/08/2019 03:46:49] - (.-.) - [57.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\srms.dat [MD5.D5CBFC2DCAB04A9B3D0CDE38D65A3F9B] - |A| - [06/10/2017 12:55:12] - (.(c) 2007 SRS Labs, Inc. - COM object implementing SRS Headphone 360.) - [204.62 Ko] - (1.1.0.0) - C:\WINDOWS\System32\SRSHP64.dll [MD5.E219852B87D0634EDE3B3B61C520B450] - |A| - [06/10/2017 12:55:12] - (.Copyright (c) 2006 SRS Labs, Inc.. - TruSurround HD and HD4 COM object for Windows.) - [216.76 Ko] - (1.1.4.0) - C:\WINDOWS\System32\SRSTSH64.dll [MD5.0F4A688E07D9905E0EF9A3BB0D1E9A60] - |A| - [06/10/2017 12:55:12] - (.Copyright 2002 SRS Labs, Inc. - TruSurroundXT Module.) - [519.9 Ko] - (3.2.0.0) - C:\WINDOWS\System32\SRSTSX64.dll [MD5.4F443A11503A87786D1B0FA818F70D07] - |A| - [06/10/2017 12:55:12] - (.(c) 2006 SRS Labs, Inc. - WOW HD COM object for Windows.) - [162.3 Ko] - (1.1.3.0) - C:\WINDOWS\System32\SRSWOW64.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [69080 Ko] - C:\WINDOWS\System32\sru [MD5.DE63BBC4AF740A7D0C379A9D758FBCE9] - |A| - [15/09/2018 09:28:22] - (.-.) - [439 Ko] - (0.0.0.0) - C:\WINDOWS\System32\ssdm.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [322.5 Ko] - C:\WINDOWS\System32\sv-SE [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\sw-KE [MD5.5354113EC1C24E84613C53467F51E133] - |A| - [15/09/2018 09:37:44] - (.-.) - [35.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SyncAppvPublishingServer.exe [MD5.20C4FE2B130D9F0C92D7629E71AFBB66] - |A| - [15/09/2018 09:29:41] - (.-.) - [1.68 Ko] - (0.0.0.0) - C:\WINDOWS\System32\SyncAppvPublishingServer.vbs [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 08:09:28] - [1390.27 Ko] - C:\WINDOWS\System32\Sysprep [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [955.28 Ko] - C:\WINDOWS\System32\SystemResetPlatform [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [10.73 Ko] - C:\WINDOWS\System32\ta-in [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [10.73 Ko] - C:\WINDOWS\System32\ta-lk [MD5.0B8821B257EEE9C01CD29C62AE9D3EF9] - |A| - [15/09/2018 09:29:16] - (.Copyright (c) libarchive authors - bsdtar archive tool.) - [49.5 Ko] - (3.3.2.0) - C:\WINDOWS\System32\tar.exe [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [679.17 Ko] - C:\WINDOWS\System32\Tasks [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 01:38:21] - [679.54 Ko] - C:\WINDOWS\System32\Tasks_Migrated [MD5.D602CA245CC6774A0981B607F0675609] - |A| - [15/09/2018 09:28:56] - (.-.) - [58.71 Ko] - (0.0.0.0) - C:\WINDOWS\System32\tcpmon.ini [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\te-IN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\tg-Cyrl-TJ [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [237 Ko] - C:\WINDOWS\System32\th-TH [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [5.97 Ko] - C:\WINDOWS\System32\ti-et [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\tk-TM [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\tn-ZA [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [317.5 Ko] - C:\WINDOWS\System32\tr-TR [MD5.B88B8D017386A00D7724519F475317A0] - |A| - [15/09/2018 09:28:26] - (.-.) - [10.33 Ko] - (0.0.0.0) - C:\WINDOWS\System32\TransformPPSToWlan.xslt [MD5.2F05390B798363D51EBE65D6320CD45E] - |A| - [15/09/2018 09:28:26] - (.-.) - [1.65 Ko] - (0.0.0.0) - C:\WINDOWS\System32\TransformPPSToWlanCredentials.xslt [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\tt-RU [MD5.D200497DD3A24F138123F0EB6C385D1D] - |A| - [15/09/2018 09:29:41] - (.-.) - [0.14 Ko] - (0.0.0.0) - C:\WINDOWS\System32\UevAppMonitor.exe.config [MD5.4AAEE8D86EC81DA2A1514ABC77E71F57] - |A| - [15/09/2018 09:29:41] - (.-.) - [3.34 Ko] - (0.0.0.0) - C:\WINDOWS\System32\UevCustomActionTypes.tlb [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ug-CN [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [248.5 Ko] - C:\WINDOWS\System32\uk-UA [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:50] - [2133.08 Ko] - C:\WINDOWS\System32\UNP [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\ur-PK [MD5.F729741D514ED13EF6AFCB1B568987A9] - |A| - [15/09/2018 09:28:38] - (.-.) - [44.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\UsbPmApi.dll [MD5.AF3011598D47B40D62AAA0D4C243BE70] - |A| - [04/05/2019 00:58:19] - (.-.) - [107 Ko] - (0.0.0.0) - C:\WINDOWS\System32\uwfcfgmgmt.dll [MD5.573AB7120592D64EB32F845BE51C1943] - |A| - [15/09/2018 09:37:31] - (.-.) - [141 Ko] - (0.0.0.0) - C:\WINDOWS\System32\uwfcsp.dll [MD5.D35D7DEB66EC9EE5B63ED49D356CDDB7] - |A| - [15/09/2018 09:38:04] - (.-.) - [30 Ko] - (0.0.0.0) - C:\WINDOWS\System32\uwfservicingapi.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\uz-Latn-UZ [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\vi-VN [MD5.A9CC242116483B98908785A06EF4B027] - |A| - [27/04/2016 22:58:32] - (.-.) - [127.78 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkan-1-1-0-11-0.dll [MD5.1299A84A2B6C0A14F1889D1A9890C668] - |A| - [20/05/2016 02:22:02] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [128.78 Ko] - (1.0.13.0) - C:\WINDOWS\System32\vulkan-1-1-0-13-0.dll [MD5.F9E86E6CC424E47928C17D54F7AFCF4D] - |A| - [23/06/2016 20:21:06] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [251.78 Ko] - (1.0.17.0) - C:\WINDOWS\System32\vulkan-1-1-0-17-0.dll [MD5.E8963B1838012C26B72F389FACA83D68] - |A| - [21/07/2016 17:46:42] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [252.28 Ko] - (1.0.21.0) - C:\WINDOWS\System32\vulkan-1-1-0-21-0.dll [MD5.8140DA331F52518CC5FF25E69093BC5C] - |A| - [09/09/2016 20:25:10] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [255.78 Ko] - (1.0.26.0) - C:\WINDOWS\System32\vulkan-1-1-0-26-0.dll [MD5.52808CC03CE3AB53187EFAE813CA0FEE] - |A| - [16/02/2016 01:26:22] - (.-.) - [123.27 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkan-1-1-0-3-1.dll [MD5.9BFB55A0F7F1F0C0E467FADBB7722085] - |A| - [16/12/2016 02:33:00] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [260.28 Ko] - (1.0.37.0) - C:\WINDOWS\System32\vulkan-1-1-0-37-0.dll [MD5.81065E281655DBB6A9202630CA019205] - |A| - [28/01/2017 00:01:26] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [315 Ko] - (1.0.39.1) - C:\WINDOWS\System32\vulkan-1-1-0-39-1.dll [MD5.C23C0F64BDADC37701B6BBE1769456DE] - |A| - [15/06/2017 21:32:44] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [529.28 Ko] - (1.0.51.0) - C:\WINDOWS\System32\vulkan-1-1-0-51-0.dll [MD5.37176FCE2FBFA1B76CFAD3522C66255D] - |A| - [12/07/2017 18:53:46] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [884.28 Ko] - (1.0.54.0) - C:\WINDOWS\System32\vulkan-1-1-0-54-0.dll [MD5.08BD2F7A762134BF86645BBA219A6B98] - |A| - [14/09/2017 01:19:50] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [905.8 Ko] - (1.0.61.0) - C:\WINDOWS\System32\vulkan-1-1-0-61-0.dll [MD5.CBD9DE83E1EA3177484797DE9F481E7E] - |A| - [02/11/2017 22:15:04] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [906.8 Ko] - (1.0.65.0) - C:\WINDOWS\System32\vulkan-1-1-0-65-0.dll [MD5.5BBC56240C406AC2615AEDA365DBE115] - |A| - [02/03/2018 04:03:42] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [937.8 Ko] - (1.1.70.0) - C:\WINDOWS\System32\vulkan-1-1-1-70-0.dll [MD5.16EECDE45C5AB76C9CB508B037FD86FE] - |A| - [04/08/2018 01:03:58] - (.Copyright (C) 2015-2018 - Vulkan Loader.) - [946.8 Ko] - (1.1.82.0) - C:\WINDOWS\System32\vulkan-1-999-0-0-0.dll [MD5.16EECDE45C5AB76C9CB508B037FD86FE] - |A| - [04/08/2018 01:03:58] - (.Copyright (C) 2015-2018 - Vulkan Loader.) - [946.8 Ko] - (1.1.82.0) - C:\WINDOWS\System32\vulkan-1.dll [MD5.503DC70FD1F996D5B68B3F6528DED1A4] - |A| - [27/04/2016 22:58:02] - (.-.) - [44.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-11-0.exe [MD5.3343A299685DBC30FDEE925661746EE2] - |A| - [20/05/2016 02:21:30] - (.-.) - [44.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-13-0.exe [MD5.CD17A6E22BE4A68A488791DABE9D9E0F] - |A| - [23/06/2016 20:20:28] - (.-.) - [122.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-17-0.exe [MD5.5EE581924C13246A0F21A62DD4BD5C3F] - |A| - [21/07/2016 17:46:12] - (.-.) - [122.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-21-0.exe [MD5.61DA784EB8C8E133EB3BB4AFBDD66758] - |A| - [09/09/2016 20:24:38] - (.-.) - [122.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-26-0.exe [MD5.B14FF3A750CDBA33378C4A549B585DFD] - |A| - [16/02/2016 01:25:20] - (.-.) - [44.77 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-3-1.exe [MD5.80EF00DDE08771B8A2C1E823F6E86E92] - |A| - [16/12/2016 02:32:28] - (.-.) - [122.78 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-37-0.exe [MD5.3FB76B5A17F8FCD23AE8DFE2DD98BBD3] - |A| - [28/01/2017 00:02:00] - (.-.) - [115.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-39-1.exe [MD5.E195CD6393DFC309CF3CFB3CF17865EC] - |A| - [15/06/2017 21:32:40] - (.-.) - [248.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-51-0.exe [MD5.BD8134D2DC39A5367DB6910DB012E1A4] - |A| - [12/07/2017 18:53:42] - (.-.) - [565.28 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-54-0.exe [MD5.6DC78B9184771F60544B9D0CC42076B3] - |A| - [14/09/2017 01:19:38] - (.-.) - [577.3 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-61-0.exe [MD5.41F9EFCE00600A2D2655BDAECB2F47AA] - |A| - [02/11/2017 22:14:46] - (.-.) - [577.8 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-0-65-0.exe [MD5.4E08923AD6265C8E319EC93DCF68AD3C] - |A| - [02/03/2018 04:03:32] - (.-.) - [667.8 Ko] - (0.0.0.0) - C:\WINDOWS\System32\vulkaninfo-1-1-1-70-0.exe [MD5.D5418BA278D472EBC0D033E73DFD6020] - |A| - [04/08/2018 01:04:12] - (.Copyright (C) 2015-2018 - Vulkan Info.) - [253.3 Ko] - (1.1.82.0) - C:\WINDOWS\System32\vulkaninfo-1-999-0-0-0.exe [MD5.D5418BA278D472EBC0D033E73DFD6020] - |A| - [04/08/2018 01:04:12] - (.Copyright (C) 2015-2018 - Vulkan Info.) - [253.3 Ko] - (1.1.82.0) - C:\WINDOWS\System32\vulkaninfo.exe [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [152827.92 Ko] - C:\WINDOWS\System32\wbem [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [0 Ko] - C:\WINDOWS\System32\WCN [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [120802.63 Ko] - C:\WINDOWS\System32\WDI [MD5.6EDD021A8B6457DDE09DE7B7FA4E8C8B] - |A| - [15/09/2018 09:28:44] - (.-.) - [0.6 Ko] - (0.0.0.0) - C:\WINDOWS\System32\WdsUnattendTemplate.xml [MD5.00000000000000000000000000000000] - |D| - [10/07/2015 13:04:22] - [0 Ko] - C:\WINDOWS\System32\wfp [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [1.12 Ko] - C:\WINDOWS\System32\WinBioDatabase [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [48376.75 Ko] - C:\WINDOWS\System32\WinBioPlugIns [MD5.92042E1EA3CDB08B077C7CE788D2816D] - |A| - [01/07/2019 16:39:55] - (.Copyright © 2019 - Java(TM) Platform SE binary.) - [107.48 Ko] - (8.0.2210.11) - C:\WINDOWS\System32\WindowsAccessBridge-64.dll [MD5.89539DF69CB40A7D214B9EC799EF5CAA] - |A| - [15/09/2018 09:28:34] - (.-.) - [122.5 Ko] - (0.0.0.0) - C:\WINDOWS\System32\WindowsDefaultHeatProcessor.dll [MD5.00000000000000000000000000000000] - |D| - [22/08/2013 17:36:31] - [14.53 Ko] - C:\WINDOWS\System32\WindowsInternal.Inbox.Media.Shared [MD5.00000000000000000000000000000000] - |D| - [22/08/2013 17:36:31] - [27.59 Ko] - C:\WINDOWS\System32\WindowsInternal.Inbox.Shared [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [11548.68 Ko] - C:\WINDOWS\System32\WindowsPowerShell [MD5.28E98ED0B6B08B7F1D163FFD184B28AF] - |A| - [15/09/2018 09:28:26] - (.-.) - [0.74 Ko] - (0.0.0.0) - C:\WINDOWS\System32\WindowsSecurityIcon.png [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [192344 Ko] - C:\WINDOWS\System32\winevt [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [6006.72 Ko] - C:\WINDOWS\System32\WinMetadata [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [107.53 Ko] - C:\WINDOWS\System32\winrm [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\wo-SN [MD5.C30C621748C66CE751B19B2788559A3E] - |A| - [15/09/2018 09:28:24] - (.-.) - [4.58 Ko] - (0.0.0.0) - C:\WINDOWS\System32\wpcmon.png [MD5.69FEC1494F4C454E994D27CA6750832B] - |A| - [15/09/2018 09:28:46] - (.-.) - [0.71 Ko] - (0.0.0.0) - C:\WINDOWS\System32\wpr.config.xml [MD5.549347BCD4AACD63243D78E8F869DBB1] - |A| - [15/08/2015 13:18:25] - (.Copyright © 2008 - OpenAL32.) - [455.52 Ko] - (2.2.0.5) - C:\WINDOWS\System32\wrap_oal.dll [MD5.CD70FD75FDAF5B66A3F0FD38513DA636] - |A| - [15/09/2018 09:28:30] - (.-.) - [95 Ko] - (0.0.0.0) - C:\WINDOWS\System32\xboxgipsynthetic.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\xh-ZA [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\yo-NG [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [241.49 Ko] - C:\WINDOWS\System32\zh-CN [MD5.00000000000000000000000000000000] - |D| - [16/07/2016 13:47:48] - [6.5 Ko] - C:\WINDOWS\System32\zh-HK [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:50] - [205.5 Ko] - C:\WINDOWS\System32\zh-TW [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\System32\zu-ZA [MD5.00000000000000000000000000000000] - |D| - [15/09/2016 18:03:24] - [0 Ko] - C:\WINDOWS\System32\ÿÿÿÿÿÿÿÿerStore [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [0 Ko] - C:\WINDOWS\SysWOW64\0409 [MD5.D6F8DD9F561B8A67FFAC2BAD7E989770] - |A| - [15/09/2018 09:29:07] - (.-.) - [0.23 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@AppHelpToast.png [MD5.82C37C3E27020AF6C2E018E944284676] - |A| - [15/09/2018 09:29:07] - (.-.) - [0.3 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@AudioToastIcon.png [MD5.495C1F072039B434827A5FE0D9761E4D] - |A| - [15/09/2018 09:29:08] - (.-.) - [0.32 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@EnrollmentToastIcon.png [MD5.1622DE67156496C78D6B7BE9B471645B] - |A| - [15/09/2018 09:29:12] - (.-.) - [0.39 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@VpnToastIcon.png [MD5.DB71001FC261F6685BE410527DAE3942] - |A| - [15/09/2018 09:29:27] - (.-.) - [0.67 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\@WirelessDisplayToast.png [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 08:09:31] - [1963.8 Ko] - C:\WINDOWS\SysWOW64\AdvancedInstallers [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\af-ZA [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\am-ET [MD5.1165B626A96B045D60DF50F10FE08B12] - |A| - [19/12/2018 17:42:54] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon AMD AVE Driver Component.) - [116.07 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\amdave32.dll [MD5.7650F6A0A86119B63A3C7315FE74E8B5] - |A| - [19/12/2018 17:42:54] - (.-.) - [373.59 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\amdgfxinfo32.dll [MD5.4A535FDC78604CE09DA86B34BCAE4C38] - |A| - [19/12/2018 17:42:54] - (.Copyright (C) 2013 - Universal Adapter for Adobe.) - [163.27 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\amdhcp32.dll [MD5.F1687B741842AB1F91CC4C17ED1C577A] - |A| - [19/12/2018 17:42:56] - (.Advanced Micro Devices, Inc. Copyright (C) 2015 - LiquidVR SDK 1.0.) - [734.59 Ko] - (1.0.15.0) - C:\WINDOWS\SysWOW64\amdlvr32.dll [MD5.3A2540C4046600E59D09B44FA8B50815] - |A| - [19/12/2018 17:42:56] - (.Copyright (c) 2013 Advanced Micro Devices, Inc. - Radeon MCL Universal Driver.) - [374.09 Ko] - (1.6.0.0) - C:\WINDOWS\SysWOW64\amdmcl32.dll [MD5.88DF983D722D23F5B54879A9FF1E9EAB] - |A| - [08/10/2015 12:25:01] - (.-.) - [980.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\amdocl_as32.exe [MD5.786EDFADE6B3752B9EE76FCCAAB5616C] - |A| - [08/10/2015 12:25:02] - (.-.) - [788.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\amdocl_ld32.exe [MD5.EC089FFAC8DA354792FC7B143402F104] - |A| - [19/12/2018 17:43:00] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon PCOM Universal Driver.) - [104.34 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\amdpcom32.dll [MD5.6F292E699E8BB5FC803A248FD246A33C] - |A| - [19/12/2018 17:43:00] - (.Copyright (C) 2014-2017 AMD Inc. - amdxcstub32.dll.) - [102.59 Ko] - (8.18.10.286) - C:\WINDOWS\SysWOW64\amdxc32.dll [MD5.7BA4194004544FDD475E6F3E2BE1E320] - |A| - [19/12/2018 17:43:00] - (.Advanced Micro Devices, Inc. Copyright (C) 2017 - Advanced Media Framework.) - [3284.09 Ko] - (1.4.11.0) - C:\WINDOWS\SysWOW64\amfrt32.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\AppLocker [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [152 Ko] - C:\WINDOWS\SysWOW64\ar-SA [MD5.30196C11BFB7FC2F4DD2A289AFFD8A84] - |A| - [15/09/2018 09:29:27] - (.Copyright (c) libarchive authors - Windows-internal libarchive library.) - [521 Ko] - (3.3.2.0) - C:\WINDOWS\SysWOW64\archiveint.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\as-IN [MD5.E88E19591B6CA601C688E37CBE1C753B] - |A| - [19/12/2018 17:43:00] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1182.59 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\atiadlxx.dll [MD5.E88E19591B6CA601C688E37CBE1C753B] - |A| - [19/12/2018 17:43:00] - (.Copyright (C) 2008-2018 Advanced Micro Devices, Inc. - ADL.) - [1182.59 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\atiadlxy.dll [MD5.4C38710FF368CC25FD23802F7171BFC8] - |A| - [19/12/2018 17:43:00] - (.-.) - [882.52 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\atiapfxx.blb [MD5.2FD7BE98415BAA28B805F61D9EEE4848] - |A| - [19/12/2018 17:43:00] - (.Copyright (C) 1998-2012 AMD Inc. - aticfxstub32.dll.) - [144.63 Ko] - (8.17.10.1646) - C:\WINDOWS\SysWOW64\aticfx32.dll [MD5.682CB674DEA53D30F39ADCD6DB65A8CC] - |A| - [19/12/2018 17:43:02] - (.-.) - [103.59 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\atidxx32.dll [MD5.4F4301E86EFA60991D9280B1BB29ED8F] - |A| - [19/12/2018 17:43:02] - (.-.) - [345.09 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\atieah32.exe [MD5.C2EA406A45C95DDECC4ED939F43D2BA1] - |A| - [19/12/2018 17:43:02] - (.Copyright (C) 2007 Advanced Micro Devices, Inc. - atigktxx.dll.) - [206.59 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\atigktxx.dll [MD5.361E19F028E443C49D2ACE181AC6161A] - |A| - [19/12/2018 17:43:02] - (.Copyright (c) 2009 Advanced Micro Devices, Inc. - Radeon PCOM Universal Driver.) - [104.34 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\atimpc32.dll [MD5.9DC56E41B35C2552441DE42837355D6A] - |A| - [19/12/2018 17:43:04] - (.Copyright (c) 2010 Advanced Micro Devices, Inc. - Radeon spu api dll.) - [132.61 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\atisamu32.dll [MD5.1A4D8FEE2E41F67BCFAC38410ECDC96F] - |A| - [19/12/2018 17:43:04] - (.-.) - [3390.02 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\atiumdva.cap [MD5.7C163EDE63854539828F5B2C1BC529FD] - |A| - [19/12/2018 17:43:04] - (.-.) - [153.46 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ativvsva.dat [MD5.219D7091DD1D93728392337FE9C7ADD6] - |A| - [19/12/2018 17:43:04] - (.-.) - [200.15 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ativvsvl.dat [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\az-Latn-AZ [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\be-BY [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [117.5 Ko] - C:\WINDOWS\SysWOW64\bg-BG [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\bn-BD [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\bn-IN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\bs-Latn-BA [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0.1 Ko] - C:\WINDOWS\SysWOW64\Bthprops [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ca-ES [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ca-ES-valencia [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\catroot [MD5.8F4D3602C7544F39F3FF856D4C5622FE] - |A| - [22/10/2014 09:33:46] - (.-.) - [59.18 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201410220933469253.log [MD5.87CB2F6787E8222B4A7D1BAEB9B5D0FA] - |A| - [22/10/2014 09:40:03] - (.-.) - [58.36 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201410220940037380.log [MD5.EEFCD0D9CADD2F212B76749F4299E9AB] - |A| - [22/10/2014 09:41:23] - (.-.) - [55.22 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201410220941236249.log [MD5.58E14FFCCCCE44F6C2BB6E2B7FBE0FB0] - |A| - [12/04/2015 12:16:19] - (.-.) - [52.31 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201504121216191376.log [MD5.9F4EFED1A4FCA6DD7AAF582083FA6A83] - |A| - [02/05/2015 14:51:16] - (.-.) - [52.31 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201505021451166384.log [MD5.B4EEF428B243F0A106972F331C223A42] - |A| - [08/08/2015 12:34:13] - (.-.) - [55.16 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201508081234135938.log [MD5.5B6703421617AACC65A5BC42851F3F3B] - |A| - [08/08/2015 12:43:28] - (.-.) - [54.3 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201508081243289837.log [MD5.2BF98A75CD5BD9AB0FD441627005D9B6] - |A| - [08/08/2015 12:44:56] - (.-.) - [52.36 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201508081244566499.log [MD5.437B8373472ADA9D3D0A9A4FE11AE454] - |A| - [21/08/2015 10:09:32] - (.-.) - [51.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201508211009329069.log [MD5.7155005542C907B234EEFD25B31FFFA7] - |A| - [21/08/2015 10:12:15] - (.-.) - [60.58 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201508211012159737.log [MD5.4CE52673E96F9206E3575052AB7E2E18] - |A| - [08/10/2015 12:27:07] - (.-.) - [59.72 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201510081227072211.log [MD5.AF4DAE8EE21885E301C238F5591C5DB5] - |A| - [08/10/2015 12:28:36] - (.-.) - [60.47 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201510081228368014.log [MD5.C06B09B3FC7CDD932E0F80078C8AA2BB] - |A| - [02/12/2015 17:41:44] - (.-.) - [59.61 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201512021641449012.log [MD5.6367881AADBDFF7C58B055D697646933] - |A| - [25/12/2018 03:59:36] - (.-.) - [52.36 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201812250259369867.log [MD5.6C96738BD6B6FA4976EDB8647BABFF51] - |A| - [25/12/2018 04:22:22] - (.-.) - [51.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201812250322223655.log [MD5.6D31672A3046FB9EF6D6328A701F687D] - |A| - [25/12/2018 04:25:13] - (.-.) - [33.2 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\CCCInstall_201812250325136570.log [MD5.57741342CB514072D26EF56B9EF95C86] - |A| - [11/04/2013 12:55:56] - (.Copyright 1999 - 2007 - CDDBControl Core Module.) - [777.49 Ko] - (2.5.0.104) - C:\WINDOWS\SysWOW64\CDDBControl.dll [MD5.99A44759C589DF319376B29724DFBAEB] - |A| - [11/04/2013 12:55:56] - (.Copyright © 2003-2007 - CddbLangDE.) - [101.49 Ko] - (2.5.0.104) - C:\WINDOWS\SysWOW64\CddbLangDE.dll [MD5.889293D30D3F7A459EA4C00FAF006B1B] - |A| - [11/04/2013 12:55:56] - (.Copyright © 2003-2007 - CddbLangES.) - [101.49 Ko] - (2.5.0.104) - C:\WINDOWS\SysWOW64\CddbLangES.dll [MD5.C69B5427BCCA7BD1ABEE933B9CD41989] - |A| - [11/04/2013 12:55:56] - (.Copyright © 2003-2007 - CddbLangFR.) - [101.49 Ko] - (2.5.0.104) - C:\WINDOWS\SysWOW64\CddbLangFR.dll [MD5.1E4ADA579CF04AAE901F14970604078E] - |A| - [11/04/2013 12:55:56] - (.Copyright © 2003-2007 - CddbLangJA.) - [81.49 Ko] - (2.5.0.104) - C:\WINDOWS\SysWOW64\CddbLangJA.dll [MD5.CDF4D8D1717F22F9BD5DFA9E44842757] - |A| - [11/04/2013 12:55:56] - (.Copyright © 2003-2007 - CddbLangRU.) - [165.49 Ko] - (2.5.0.104) - C:\WINDOWS\SysWOW64\CddbLangRU.dll [MD5.F525176D64D23A4C4B27DD6BCCD96F4E] - |A| - [11/04/2013 12:55:56] - (.Copyright 2001 - 2007 - CDDBUIControl Module.) - [789.49 Ko] - (2.5.0.104) - C:\WINDOWS\SysWOW64\CDDBUI.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\chr-CHER-US [MD5.38718C4E864DC8F8E1DB0EF3B5566FA7] - |A| - [02/07/2016 22:40:19] - (.Copyright (C) 2004/05 Sony DADC Austria AG - SecuROM Context-Menu for Explorer..) - [174.61 Ko] - (1.1.221.0) - C:\WINDOWS\SysWOW64\CmdLineExt_x64.dll [MD5.B4379ADDC623DE30530471F91072921D] - |A| - [09/12/2011 08:55:56] - (.(c)1998-2011 Codejock Software, - Xtreme CommandBars ActiveX Control Module.) - [2709.99 Ko] - (15.2.1.0) - C:\WINDOWS\SysWOW64\Codejock.CommandBars.Unicode.v15.2.1.ocx [MD5.0C6C023BD2EFD2D1BEB322DA33326301] - |A| - [09/12/2011 08:56:00] - (.(c)1998-2011 Codejock Software, - Xtreme Suite ActiveX Control Module.) - [1885.99 Ko] - (15.2.1.0) - C:\WINDOWS\SysWOW64\Codejock.Controls.Unicode.v15.2.1.ocx [MD5.E36EC1E73C6AF609563A1BF782998EB2] - |A| - [09/12/2011 08:56:28] - (.(c)1998-2011 Codejock Software, - Xtreme SkinFramework ActiveX Control Module.) - [573.99 Ko] - (15.2.1.0) - C:\WINDOWS\SysWOW64\Codejock.SkinFramework.Unicode.v15.2.1.ocx [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [317.5 Ko] - C:\WINDOWS\SysWOW64\com [MD5.70236CD4EC0616CC768309C13D84ACDC] - |A| - [06/09/2017 13:42:18] - (.-.) - [35 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\comdlg32.oca [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [32.35 Ko] - C:\WINDOWS\SysWOW64\config [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:51] - [53.11 Ko] - C:\WINDOWS\SysWOW64\Configuration [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [175.5 Ko] - C:\WINDOWS\SysWOW64\cs-CZ [MD5.A13ED3466516D2B60AC4EE4373ECE977] - |A| - [15/09/2018 09:29:27] - (.© 1996 - 2017 Daniel Stenberg, . - The curl executable.) - [377.5 Ko] - (7.55.1.0) - C:\WINDOWS\SysWOW64\curl.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\cy-GB [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [176 Ko] - C:\WINDOWS\SysWOW64\da-DK [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [192.5 Ko] - C:\WINDOWS\SysWOW64\de-DE [MD5.C04ED7B2794D40E8E777FD44ED44FC50] - |A| - [15/09/2018 09:29:03] - (.-.) - [0.36 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\DefaultAccountTile.png [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:51] - [202.5 Ko] - C:\WINDOWS\SysWOW64\DiagSvcs [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [7547.01 Ko] - C:\WINDOWS\SysWOW64\Dism [MD5.FF6DFF3C6C7C52A8D9E0584BBD691F9B] - |A| - [04/08/2017 06:03:52] - (.2017 DivX, LLC. DivX and associated logos are trademarks of DivX, LLC or its affiliates. - DivX Control Panel Applet.) - [355.46 Ko] - (10.5.0.85) - C:\WINDOWS\SysWOW64\DivXControlPanelApplet.cpl [MD5.5ABCD9F2323D7E4AC51728CC32F17CC6] - |A| - [14/01/2016 00:37:50] - (.Copyright © 2000 - 2016 Elaborate Bytes AG - ElbyCDIO DLL.) - [93.6 Ko] - (6.1.9.1) - C:\WINDOWS\SysWOW64\ElbyCDIO.dll [MD5.F189CC7F7C13A42480D9B58504156C28] - |A| - [19/07/2015 18:55:17] - (.Copyright © 2002 - 2015 Elaborate Bytes AG - VirtualCloneDrive.) - [130.9 Ko] - (5.5.2.0) - C:\WINDOWS\SysWOW64\ElbyVCD.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [0 Ko] - C:\WINDOWS\SysWOW64\en [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [108.5 Ko] - C:\WINDOWS\SysWOW64\en-GB [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [578.5 Ko] - C:\WINDOWS\SysWOW64\en-US [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [185 Ko] - C:\WINDOWS\SysWOW64\es-ES [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [118.5 Ko] - C:\WINDOWS\SysWOW64\es-MX [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [109.5 Ko] - C:\WINDOWS\SysWOW64\et-EE [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\eu-ES [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:51] - [12990.15 Ko] - C:\WINDOWS\SysWOW64\F12 [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\fa-IR [MD5.3939D061DCBCB8D3C04FA739B8A15AB8] - |A| - [13/04/2015 21:11:58] - (.Copyright © 2002-2013 - ffdshow VFW.) - [110 Ko] - (1.3.4532.0) - C:\WINDOWS\SysWOW64\ff_vfw.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [176.5 Ko] - C:\WINDOWS\SysWOW64\fi-FI [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\fil-PH [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [3150 Ko] - C:\WINDOWS\SysWOW64\fr [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [122 Ko] - C:\WINDOWS\SysWOW64\fr-CA [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [13576.87 Ko] - C:\WINDOWS\SysWOW64\fr-FR [MD5.2A4552B5BACB8F7A6AD00E9AD8B804DA] - |A| - [26/02/2013 08:31:26] - (.Copyright © Beepa P/L 2013 - Fraps.) - [64 Ko] - (3.5.99.15618) - C:\WINDOWS\SysWOW64\frapsvid.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\FxsTmp [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ga-IE [MD5.B3F04EBCEC86584E82ACDE3B129C51C0] - |A| - [19/12/2018 17:43:06] - (.-.) - [373.61 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\GameManager32.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\gd-GB [MD5.2EF6483C45EB43F4B415CE57F26306B7] - |A| - [29/12/2009 11:35:58] - (.Copyright (C) 2005 - 2009 gdpicture.com - GdPicture Image Plugin.) - [2465.63 Ko] - (1.7.0.8) - C:\WINDOWS\SysWOW64\gdimgplug.dll [MD5.571F4C898A28314A03946D9D3938DB41] - |A| - [29/12/2009 11:35:28] - (.© 2004 - 2009 - GdPicture Pro 5 - Imaging ToolKit.) - [2476.63 Ko] - (5.12.0.5) - C:\WINDOWS\SysWOW64\gdpicturepro5.ocx [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\gl-ES [MD5.0B4EE364E719D7662D3EC19E7532F78F] - |A| - [22/10/2014 09:48:50] - (.-.) - [249.74 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\Gms.log [MD5.1E91815C329345AD54FE08BF7A98F749] - |A| - [15/09/2018 18:37:56] - (.Copyright (C) 2017 - Gracenote SDK component.) - [4073.5 Ko] - (3.10.5.5585) - C:\WINDOWS\SysWOW64\gnsdk_fp.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\GroupPolicy [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\GroupPolicyUsers [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\gu-IN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ha-Latn-NG [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [144.5 Ko] - C:\WINDOWS\SysWOW64\he-IL [MD5.2E2FE36B09077A3EEBF713F3257514FC] - |A| - [15/09/2018 09:29:03] - (.-.) - [200.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\HeatCore.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\hi-IN [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [113.5 Ko] - C:\WINDOWS\SysWOW64\hr-HR [MD5.9338A347E920717F76FDF41B1CA05FD4] - |A| - [08/06/2017 19:24:14] - (.-.) - [236.37 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\hsa-thunk.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [181 Ko] - C:\WINDOWS\SysWOW64\hu-HU [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\hy-AM [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [36.27 Ko] - C:\WINDOWS\SysWOW64\icsxml [MD5.93214B768B4306824547485C4F8D43DC] - |RA| - [18/06/2019 17:38:55] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU I18N DLL.) - [1581 Ko] - (61.1.0.0) - C:\WINDOWS\SysWOW64\icuin.dll [MD5.7A55602EDBB1ECC335AA0E3FE75C2890] - |RA| - [15/04/2019 17:48:33] - (.Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html - ICU Common DLL.) - [1128 Ko] - (61.1.0.0) - C:\WINDOWS\SysWOW64\icuuc.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\id-ID [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ig-NG [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [21854.52 Ko] - C:\WINDOWS\SysWOW64\IME [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\inetsrv [MD5.DC0E693807A529CCC10D1AB9126FB753] - |A| - [15/04/2019 17:48:30] - (.-.) - [577.96 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\InputHost.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [219 Ko] - C:\WINDOWS\SysWOW64\InputMethod [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [1160 Ko] - C:\WINDOWS\SysWOW64\InstallShield [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\Ipmi [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\is-IS [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [184 Ko] - C:\WINDOWS\SysWOW64\it-IT [MD5.E813701A181FB486AC62050D1CFD729F] - |A| - [19/12/2018 17:43:08] - (.Copyright (C) 2013 AMD Inc. - Mantle loader.) - [148.61 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\mantle32.dll [MD5.B299F95BB9BB1DE324A5D4CBE68A60D7] - |A| - [19/12/2018 17:43:08] - (.Copyright (C) 2013 AMD Inc. - Mantle extension library.) - [134.61 Ko] - (25.20.15003.5010) - C:\WINDOWS\SysWOW64\mantleaxl32.dll [MD5.C4B71462F9EEC40A0F0249F3B608DCB8] - |A| - [06/10/2017 12:54:41] - (.Copyright (c) 2006-2017 Creative Technology Ltd. - Creative Audio Processing Object Module.) - [1876.24 Ko] - (1.2.65.10) - C:\WINDOWS\SysWOW64\MBAPO232.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\mi-NZ [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [2922.85 Ko] - C:\WINDOWS\SysWOW64\migration [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [815.3 Ko] - C:\WINDOWS\SysWOW64\migwiz [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\mk-MK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ml-IN [MD5.C8BF077B236ED2803347BD95DE29BF68] - |A| - [15/09/2018 09:31:37] - (.-.) - [3.03 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\mmc.exe.config [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\mn-MN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\mr-IN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ms-MY [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [45.5 Ko] - C:\WINDOWS\SysWOW64\MSDRM [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [52.28 Ko] - C:\WINDOWS\SysWOW64\Msdtc [MD5.4CC7F5C5CFAE2CF3A9B6757C2083EFFA] - |A| - [06/09/2017 13:42:18] - (.-.) - [28.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\MSINET.oca [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\mt-MT [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [20.55 Ko] - C:\WINDOWS\SysWOW64\MUI [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [172.5 Ko] - C:\WINDOWS\SysWOW64\nb-NO [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\NDF [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ne-NP [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [51 Ko] - C:\WINDOWS\SysWOW64\networklist [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [182 Ko] - C:\WINDOWS\SysWOW64\nl-NL [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\nn-NO [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\nso-ZA [MD5.00000000000000000000000000000000] - |SD| - [15/09/2018 09:33:51] - [3781.5 Ko] - C:\WINDOWS\SysWOW64\Nui [MD5.B3B9C8925432FDA674ACCA908FE3CFDE] - |A| - [15/09/2018 09:40:49] - (.-.) - [36.79 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\OneDrive.ico [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [677.3 Ko] - C:\WINDOWS\SysWOW64\oobe [MD5.235355A8DD26903E75D5E812ECF50E53] - |A| - [30/08/2012 14:31:10] - (.Copyright (C) 2000-2006 - Standard OpenAL(TM) Implementation.) - [106.52 Ko] - (6.14.357.24) - C:\WINDOWS\SysWOW64\OpenAL32.dll [MD5.5A4FB0E69F0064C2CAA41C2650D15F5E] - |A| - [12/07/2015 19:26:56] - (.-.) - [190.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\OpenAL64.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\or-IN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\pa-Arab-PK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\pa-IN [MD5.94EC0B68B4F933CBE5B92523ADC4AE2C] - |A| - [26/06/2010 01:07:18] - (.Copyright © 2005-2010 CACE Technologies. Copyright © 1999-2005 NetGroup, Politecnico di Torino. - packet.dll (NT5) Dynamic Link Library.) - [98.52 Ko] - (4.1.0.2001) - C:\WINDOWS\SysWOW64\packet.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [68 Ko] - C:\WINDOWS\SysWOW64\PerceptionSimulation [MD5.CE86FE01E97C8A22C7508F37DDC954FF] - |A| - [02/05/2015 14:59:39] - (.-.) - [1725.19 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PerfStringBackup.INI [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [182.5 Ko] - C:\WINDOWS\SysWOW64\pl-PL [MD5.3A2E85F7D90D15460C337CE80C2E3B29] - |A| - [24/10/2014 19:24:36] - (.-.) - [75.09 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PnkBstrA.exe [MD5.5564EE004708EBB76086F6D66ACF60FF] - |A| - [24/10/2014 19:24:37] - (.-.) - [275.09 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PnkBstrB.ex0 [MD5.5564EE004708EBB76086F6D66ACF60FF] - |A| - [24/10/2014 19:24:37] - (.-.) - [275.09 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PnkBstrB.exe [MD5.5564EE004708EBB76086F6D66ACF60FF] - |A| - [24/10/2014 19:29:04] - (.-.) - [275.09 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\PnkBstrB.xtr [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [420.74 Ko] - C:\WINDOWS\SysWOW64\Printing_Admin_Scripts [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\prs-AF [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [180 Ko] - C:\WINDOWS\SysWOW64\pt-BR [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [183 Ko] - C:\WINDOWS\SysWOW64\pt-PT [MD5.F04A90F917BA10AE2DCBE859870F4DEA] - |A| - [07/11/2007 04:19:28] - (.-.) - [52.05 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\pthreadVC.dll [MD5.676FC65E4A49A525DF0ECDE3596F3AE5] - |A| - [30/06/2014 16:03:52] - (.Copyright © 2001-2014 Python Software Foundation. Copyright © 2000 BeOpen.com. Copyright © 1995-2001 CNRI. Copyright © 1991-1995 SMC. - Python Core.) - [2396.5 Ko] - (2.7.8150.1013) - C:\WINDOWS\SysWOW64\python27.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\quc-Latn-GT [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\quz-PE [MD5.88E8D62F192A409C90A399A759C77884] - |A| - [19/12/2018 17:43:08] - (.(c) Advanced Micro Devices, Inc. - AMD RapidFire.) - [470.61 Ko] - (1.2.1.62) - C:\WINDOWS\SysWOW64\Rapidfire.dll [MD5.90AEA44E3DF5A70A9DC95597FE51ECA9] - |A| - [19/12/2018 17:43:08] - (.(c) Advanced Micro Devices, Inc. - AMD Rapid Fire Server.) - [42.11 Ko] - (1.2.0.15) - C:\WINDOWS\SysWOW64\RapidFireServer.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [23.75 Ko] - C:\WINDOWS\SysWOW64\ras [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\RasToast [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0.82 Ko] - C:\WINDOWS\SysWOW64\Recovery [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\restore [MD5.B15BE6F231DAC74A313A77AEFBF251BD] - |A| - [03/04/2017 18:43:06] - (.-.) - [36.61 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\RGBAcodec.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [117 Ko] - C:\WINDOWS\SysWOW64\ro-RO [MD5.00000000000000000000000000000000] - |D| - [28/07/2017 23:26:41] - [4551.38 Ko] - C:\WINDOWS\SysWOW64\RTCOM [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [179.5 Ko] - C:\WINDOWS\SysWOW64\ru-RU [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\rw-RW [MD5.0BE719C4DE682B6521535F229D6B9E5E] - |A| - [11/08/2015 13:08:40] - (.Copyright © 2015 Razer Inc. All rights reserved - Razer Audio Manager.) - [412 Ko] - (1.0.38.0) - C:\WINDOWS\SysWOW64\rzaudiodll.dll [MD5.99BBCF6B6648D0751B905419B534BD97] - |A| - [11/08/2015 13:08:42] - (.Copyright © 2015 Razer Inc. All rights reserved - Razer RzDeviceDLL Manager.) - [1169.5 Ko] - (1.0.38.0) - C:\WINDOWS\SysWOW64\rzdevicedll.dll [MD5.1987E86DCBEF29B9ABFF648303BDAF16] - |A| - [14/03/2016 07:36:22] - (.Copyright © 2016 Razer Inc. All rights reserved - Razer RzDeviceDLL Manager.) - [95.46 Ko] - (1.0.45.6) - C:\WINDOWS\SysWOW64\rzdevinfo.dll [MD5.4FE516F1AFAD6DE8AC0CC13CC86E1D68] - |A| - [11/08/2015 13:08:46] - (.Copyright © 2015 Razer Inc. All rights reserved - Razer RzDisplayDLL Manager.) - [114.5 Ko] - (1.0.38.0) - C:\WINDOWS\SysWOW64\rzdisplaydll.dll [MD5.6EC9BA3CC7A422C90E0739D836FDB456] - |A| - [11/08/2015 13:08:52] - (.Copyright © 2015 Razer Inc. All rights reserved - Razer RzTouchDll.) - [152 Ko] - (1.0.38.0) - C:\WINDOWS\SysWOW64\rztouchdll.dll [MD5.604E07596BAA1C7DE760DAF5A84DE910] - |A| - [16/07/2015 05:13:46] - (.Copyright © 2015 Razer Inc. All rights reserved - Razer RzVirtualDev Manager.) - [85.5 Ko] - (1.0.37.0) - C:\WINDOWS\SysWOW64\rzvirtualdev.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\sd-Arab-PK [MD5.7753FC56F9CAC4B5AFDA3196DB654F21] - |A| - [12/01/2016 14:41:06] - (.Copyright © 2004-2010 MAPILab Ltd. & Add-in Express Ltd. - Security Manager Component for Microsoft Outlook allows to turn off and on Outlook Object Model Security Guard.) - [141.27 Ko] - (3.0.0.0) - C:\WINDOWS\SysWOW64\secman.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\si-LK [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [114.5 Ko] - C:\WINDOWS\SysWOW64\sk-SK [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [114 Ko] - C:\WINDOWS\SysWOW64\sl-SI [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [52.14 Ko] - C:\WINDOWS\SysWOW64\slmgr [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\SMI [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [4051.8 Ko] - C:\WINDOWS\SysWOW64\Speech [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [9041.62 Ko] - C:\WINDOWS\SysWOW64\Speech_OneCore [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [1926.92 Ko] - C:\WINDOWS\SysWOW64\spp [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [23.61 Ko] - C:\WINDOWS\SysWOW64\sppui [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\sq-AL [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\sr-Cyrl-BA [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\sr-Cyrl-RS [MD5.00000000000000000000000000000000] - |D| - [16/07/2016 13:47:48] - [0 Ko] - C:\WINDOWS\SysWOW64\sr-Latn-CS [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [234.93 Ko] - C:\WINDOWS\SysWOW64\sr-Latn-RS [MD5.2E00E08420875FAE0B173C6A34C2A575] - |A| - [15/09/2018 09:29:33] - (.-.) - [18.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\srms-apr.dat [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\sru [MD5.2A9EB39951763761E55D46BFEB595AEB] - |A| - [15/09/2018 09:29:00] - (.-.) - [319.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\ssdm.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [174 Ko] - C:\WINDOWS\SysWOW64\sv-SE [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\sw-KE [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [0 Ko] - C:\WINDOWS\SysWOW64\sysprep [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ta-IN [MD5.8E49D76E21295D010FF0803D65928F5A] - |A| - [15/09/2018 09:29:28] - (.Copyright (c) libarchive authors - bsdtar archive tool.) - [42.5 Ko] - (3.3.2.0) - C:\WINDOWS\SysWOW64\tar.exe [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [0 Ko] - C:\WINDOWS\SysWOW64\Tasks [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\te-IN [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\tg-Cyrl-TJ [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [106.5 Ko] - C:\WINDOWS\SysWOW64\th-TH [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ti-ET [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\tk-TM [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\tn-ZA [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [171.5 Ko] - C:\WINDOWS\SysWOW64\tr-TR [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\tt-RU [MD5.01E96A85B337B702AE2BC7F838AE7B65] - |A| - [15/09/2018 09:29:44] - (.-.) - [3.34 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\UevCustomActionTypes.tlb [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ug-CN [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [114.5 Ko] - C:\WINDOWS\SysWOW64\uk-UA [MD5.1FF0D60C82B04727811E4D84932311D9] - |A| - [18/01/2016 01:38:42] - (.-.) - [106.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\un-gamma.exe [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\ur-PK [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\uz-Latn-UZ [MD5.CC7C694B2BD1510C5AAE7374A5B52B92] - |A| - [03/02/1999 08:45:42] - (.-.) - [26.46 Ko] - (2.0.0.5215) - C:\WINDOWS\SysWOW64\VBAFR32.OLB [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\vi-VN [MD5.0F77A132D8F75871235590A8911D48B3] - |A| - [27/04/2016 22:59:18] - (.-.) - [126.78 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-11-0.dll [MD5.E965349A243F75408BB80053E2CBB632] - |A| - [20/05/2016 02:22:50] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [127.78 Ko] - (1.0.13.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-13-0.dll [MD5.3DB66C5ED188B9AB99FD9A597DF4A35A] - |A| - [23/06/2016 20:22:00] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [258.78 Ko] - (1.0.17.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-17-0.dll [MD5.D4EF5C4BD403C6D706E040E689B91D71] - |A| - [21/07/2016 17:47:30] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [259.28 Ko] - (1.0.21.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-21-0.dll [MD5.2F28B023406F83D17ACE4294E2510F44] - |A| - [09/09/2016 20:25:58] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [263.28 Ko] - (1.0.26.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-26-0.dll [MD5.E5E98894277C85C600CE391B71F0C084] - |A| - [16/02/2016 01:27:00] - (.-.) - [122.77 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-3-1.dll [MD5.FAC1B12B9CA744802AB85930703B64F1] - |A| - [16/12/2016 02:33:50] - (.Copyright (C) 2015-2016 - Vulkan Loader.) - [267.28 Ko] - (1.0.37.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-37-0.dll [MD5.D2329824E696F1FB44ACFFE334B6F564] - |A| - [28/01/2017 00:04:54] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [319 Ko] - (1.0.39.1) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-39-1.dll [MD5.58F83E24DFC1ED7248F93F80F4ABD1F7] - |A| - [15/06/2017 21:32:56] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [512.78 Ko] - (1.0.51.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-51-0.dll [MD5.42BDB9C14F5A2CA76268139FD391E2F9] - |A| - [12/07/2017 18:54:00] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [758.78 Ko] - (1.0.54.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-54-0.dll [MD5.4687C05E2980F0FA45AD49BB5805CBDA] - |A| - [14/09/2017 01:20:30] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [779.3 Ko] - (1.0.61.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-61-0.dll [MD5.4F46DCAD797B18D49B2AB06E528AC3EC] - |A| - [02/11/2017 22:15:40] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [779.8 Ko] - (1.0.65.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-0-65-0.dll [MD5.768180716EE376D2FD512DAF4ABFAE1E] - |A| - [02/03/2018 04:04:08] - (.Copyright (C) 2015-2017 - Vulkan Loader.) - [808.8 Ko] - (1.1.70.0) - C:\WINDOWS\SysWOW64\vulkan-1-1-1-70-0.dll [MD5.F0301D3ABA2F0861A256CD8F2D939DDD] - |A| - [04/08/2018 01:03:58] - (.Copyright (C) 2015-2018 - Vulkan Loader.) - [816.8 Ko] - (1.1.82.0) - C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll [MD5.F0301D3ABA2F0861A256CD8F2D939DDD] - |A| - [04/08/2018 01:03:58] - (.Copyright (C) 2015-2018 - Vulkan Loader.) - [816.8 Ko] - (1.1.82.0) - C:\WINDOWS\SysWOW64\vulkan-1.dll [MD5.27C010E10CCF07EA8FDD6536EE2E934E] - |A| - [27/04/2016 22:58:48] - (.-.) - [39.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-11-0.exe [MD5.98A0E6CA5B568BBA4EDF2C5126059D72] - |A| - [20/05/2016 02:22:18] - (.-.) - [39.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-13-0.exe [MD5.28030429D21AE3B1D4530578FE138A5E] - |A| - [23/06/2016 20:21:24] - (.-.) - [108.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-17-0.exe [MD5.62345239BD4401F4E32A8B91FD102C32] - |A| - [21/07/2016 17:47:00] - (.-.) - [108.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-21-0.exe [MD5.6448CF3F64B96B8C72A9D5905F7C07B0] - |A| - [09/09/2016 20:25:28] - (.-.) - [108.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-26-0.exe [MD5.710EE686DFE995825D39B6466A6AA356] - |A| - [16/02/2016 01:25:40] - (.-.) - [41.27 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-3-1.exe [MD5.CD202948D741C868F64A5FC006250C56] - |A| - [16/12/2016 02:33:18] - (.-.) - [108.78 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-37-0.exe [MD5.05A2162D43BE42EA521809DC845BF756] - |A| - [28/01/2017 00:05:24] - (.-.) - [101.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-39-1.exe [MD5.AEFDC0721352319F655F4B49A3CB7825] - |A| - [15/06/2017 21:32:50] - (.-.) - [228.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-51-0.exe [MD5.58727485779288FC9A239BF61BF08B52] - |A| - [12/07/2017 18:53:54] - (.-.) - [466.28 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-54-0.exe [MD5.03DEC18E91E9EEFC96FEEFB61C40F8A1] - |A| - [14/09/2017 01:20:14] - (.-.) - [478.8 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-61-0.exe [MD5.0110919F2E42A51F1C0253A9BF6366D4] - |A| - [02/11/2017 22:15:26] - (.-.) - [479.3 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-0-65-0.exe [MD5.1C72AB64394A2DAE512A701B1F574F3D] - |A| - [02/03/2018 04:03:58] - (.-.) - [562.3 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-1-1-70-0.exe [MD5.8236636D9B0EE45F7E91225621B6DE0A] - |A| - [04/08/2018 01:04:10] - (.Copyright (C) 2015-2018 - Vulkan Info.) - [229.3 Ko] - (1.1.82.0) - C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe [MD5.8236636D9B0EE45F7E91225621B6DE0A] - |A| - [04/08/2018 01:04:10] - (.Copyright (C) 2015-2018 - Vulkan Info.) - [229.3 Ko] - (1.1.82.0) - C:\WINDOWS\SysWOW64\vulkaninfo.exe [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [18121.75 Ko] - C:\WINDOWS\SysWOW64\wbem [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [0 Ko] - C:\WINDOWS\SysWOW64\WCN [MD5.92042E1EA3CDB08B077C7CE788D2816D] - |A| - [17/07/2019 13:53:46] - (.Copyright © 2019 - Java(TM) Platform SE binary.) - [107.48 Ko] - (8.0.2210.11) - C:\WINDOWS\SysWOW64\WindowsAccessBridge-64.dll [MD5.F884B2B3047C6A61B21540CEAACC53BC] - |A| - [15/09/2018 09:29:03] - (.-.) - [104.5 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\WindowsDefaultHeatProcessor.dll [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [10246.04 Ko] - C:\WINDOWS\SysWOW64\WindowsPowerShell [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [6004.44 Ko] - C:\WINDOWS\SysWOW64\WinMetadata [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 18:37:16] - [107.53 Ko] - C:\WINDOWS\SysWOW64\winrm [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\wo-SN [MD5.5FBD592AE4704045EEC712C5AEBB6419] - |A| - [07/11/2007 04:23:18] - (.Copyright © 2005-2007 CACE Technologies. Copyright © 1999-2005 NetGroup, Politecnico di Torino. - wpcap.dll Dynamic Link Library - based on libpcap 0.9.5.) - [234.62 Ko] - (4.0.0.1040) - C:\WINDOWS\SysWOW64\wpcap.dll [MD5.D494267BC169604FAC5E3679B9A97FED] - |A| - [15/08/2015 13:18:25] - (.Copyright © 2008 - OpenAL32.) - [434.52 Ko] - (2.2.0.5) - C:\WINDOWS\SysWOW64\wrap_oal.dll [MD5.067E6092C4211380DAA5334303C93E86] - |A| - [14/05/2005 03:37:32] - (.Copyright © Redcl0ud 2005 - XBCD Interface.) - [24 Ko] - (0.1.1.0) - C:\WINDOWS\SysWOW64\XBCDIF.dll [MD5.A632FBFC2E7769FA2A7F8D1251BBDA0F] - |A| - [18/03/2005 03:56:44] - (.Copyright © Redcl0ud 2005 - XBCD Rumble Driver.) - [69.5 Ko] - (0.8.0.0) - C:\WINDOWS\SysWOW64\XBCDR.dll [MD5.D13AFC6D97910290FA635AF00BCC1DEC] - |A| - [20/03/2005 09:35:36] - (.Copyright © Redcl0ud 2004 - Tests gamepads using XBCD..) - [206 Ko] - (2.0.6.0) - C:\WINDOWS\SysWOW64\XBCDSU.cpl [MD5.4CC6C2D85CE89C54905BAEFCA1A0AA95] - |A| - [15/09/2018 09:29:03] - (.-.) - [62 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\xboxgipsynthetic.dll [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\xh-ZA [MD5.7B5C062F2A488B5B7A95D4EABCE0A42A] - |A| - [06/09/2017 13:42:18] - (.-.) - [36 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\xmlparse.dll [MD5.7C66397352506C58F70B6D1D710EEA42] - |A| - [06/09/2017 13:42:18] - (.-.) - [68 Ko] - (0.0.0.0) - C:\WINDOWS\SysWOW64\xmltok.dll [MD5.00000000000000000000000000000000] - |D| - [15/04/2019 17:32:23] - [10.14 Ko] - C:\WINDOWS\SysWOW64\XPSViewer [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\yo-NG [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [125.5 Ko] - C:\WINDOWS\SysWOW64\zh-CN [MD5.00000000000000000000000000000000] - |D| - [16/07/2016 13:47:48] - [0 Ko] - C:\WINDOWS\SysWOW64\zh-HK [MD5.00000000000000000000000000000000] - |D| - [15/09/2018 09:33:51] - [126 Ko] - C:\WINDOWS\SysWOW64\zh-TW [MD5.00000000000000000000000000000000] - |D| - [12/04/2018 18:23:27] - [0 Ko] - C:\WINDOWS\SysWOW64\zu-ZA ---------- | [Public] [22/10/2014 09:23:17] - |RHD| - [75941] - C:\Users\Public\AccountPictures [22/08/2013 17:36:30] - |RHD| - [7010] - C:\Users\Public\Desktop [15/09/2018 09:31:35] - |ASH| - [174] - C:\Users\Public\desktop.ini [22/08/2013 17:36:30] - |RD| - [7569138] - C:\Users\Public\Documents [22/08/2013 17:36:30] - |RD| - [174] - C:\Users\Public\Downloads [14/07/2009 05:20:08] - |RHD| - [0] - C:\Users\Public\Favorites [15/09/2018 09:33:50] - |RHD| - [1135] - C:\Users\Public\Libraries [15/06/2018 23:29:57] - |D| - [1603] - C:\Users\Public\Logi [22/08/2013 17:36:30] - |RD| - [380] - C:\Users\Public\Music [22/08/2013 17:36:30] - |RD| - [380] - C:\Users\Public\Pictures [14/07/2009 17:35:18] - |RD| - [0] - C:\Users\Public\Recorded TV [21/03/2018 21:32:04] - |D| - [0] - C:\Users\Public\Recorded TV (1) [04/09/2018 13:12:08] - |D| - [0] - C:\Users\Public\Recorded TV (2) [07/03/2015 17:27:42] - |D| - [0] - C:\Users\Public\Sony Online Entertainment [22/08/2013 17:36:30] - |RD| - [380] - C:\Users\Public\Videos ---------- | [Timothée] [14/08/2016 17:01:25] - |D| - [131072] - C:\Users\Timothée\AppData [14/08/2016 17:01:25] - |D| - [131072] - C:\Users\Timothée\AppData\Local [14/08/2016 17:01:25] - |D| - [131072] - C:\Users\Timothée\AppData\Local\Steam ---------- | [Timothée] [14/09/2017 00:48:45] - |D| - [2448] - C:\Users\Timothée\.android [25/10/2018 23:51:55] - |D| - [21437] - C:\Users\Timothée\.BigNox [01/07/2019 19:31:33] - |D| - [814] - C:\Users\Timothée\.cache [01/07/2019 19:26:39] - |D| - [78] - C:\Users\Timothée\.dbus-keyrings [30/03/2016 11:30:41] - |A| - [3951] - C:\Users\Timothée\.ganttproject [30/06/2015 10:13:32] - |D| - [43] - C:\Users\Timothée\.idlerc [31/08/2015 21:18:44] - |D| - [449] - C:\Users\Timothée\.oracle_jre_usage [06/01/2017 14:08:57] - |D| - [0] - C:\Users\Timothée\.Origin [26/10/2016 09:11:39] - |D| - [0] - C:\Users\Timothée\.QtWebEngineProcess [27/11/2014 18:52:17] - |D| - [491520] - C:\Users\Timothée\.swt [28/01/2017 16:25:39] - |D| - [0] - C:\Users\Timothée\.TeamSpeak 3 [11/06/2015 23:18:35] - |D| - [79951] - C:\Users\Timothée\.VirtualBox [26/11/2014 23:34:14] - |D| - [999] - C:\Users\Timothée\.yellow [22/03/2018 11:58:12] - |RD| - [298] - C:\Users\Timothée\3D Objects [15/04/2019 18:51:11] - |HD| - [12301619539] - C:\Users\Timothée\AppData [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\Application Data [02/12/2016 15:32:34] - |D| - [369] - C:\Users\Timothée\Cheathappens [21/10/2014 12:43:15] - |RD| - [72474] - C:\Users\Timothée\Contacts [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\Cookies [22/10/2014 08:40:19] - |RD| - [75494390800] - C:\Users\Timothée\Desktop [22/10/2014 08:40:19] - |RD| - [4771937023] - C:\Users\Timothée\Documents [21/10/2014 12:43:07] - |RD| - [7176259090] - C:\Users\Timothée\Downloads [01/07/2019 15:37:06] - |D| - [683404] - C:\Users\Timothée\Emulation [22/10/2014 08:40:19] - |RD| - [6946] - C:\Users\Timothée\Favorites [30/03/2016 11:29:23] - |A| - [677394] - C:\Users\Timothée\ganttproject.log [14/09/2017 00:48:52] - |A| - [66] - C:\Users\Timothée\inittk.ini [14/09/2017 00:48:31] - |A| - [41] - C:\Users\Timothée\inst.ini [21/10/2014 12:58:24] - |D| - [8161411] - C:\Users\Timothée\Intel [19/08/2016 17:32:15] - |D| - [1282643] - C:\Users\Timothée\JavaCPC [21/10/2014 12:43:07] - |RD| - [5562] - C:\Users\Timothée\Links [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\Local Settings [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\Menu Démarrer [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\Mes documents [22/03/2018 12:00:31] - |HD| - [5258986] - C:\Users\Timothée\MicrosoftEdgeBackups [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\Modèles [21/10/2014 12:43:07] - |RD| - [504] - C:\Users\Timothée\Music [14/09/2017 00:48:35] - |D| - [0] - C:\Users\Timothée\Nox_share [15/04/2019 18:51:11] - |AH| - [24903680] - C:\Users\Timothée\NTUSER.DAT [15/04/2019 18:51:11] - |ASH| - [2621440] - C:\Users\Timothée\ntuser.dat.LOG1 [15/04/2019 18:51:11] - |ASH| - [1900544] - C:\Users\Timothée\ntuser.dat.LOG2 [15/04/2019 18:51:12] - |ASH| - [65536] - C:\Users\Timothée\NTUSER.DAT{68902f1b-5fa6-11e9-b1c8-bbe50dc4e491}.TM.blf [15/04/2019 18:51:12] - |ASH| - [524288] - C:\Users\Timothée\NTUSER.DAT{68902f1b-5fa6-11e9-b1c8-bbe50dc4e491}.TMContainer00000000000000000001.regtrans-ms [15/04/2019 18:51:12] - |ASH| - [524288] - C:\Users\Timothée\NTUSER.DAT{68902f1b-5fa6-11e9-b1c8-bbe50dc4e491}.TMContainer00000000000000000002.regtrans-ms [15/04/2019 19:26:41] - |SH| - [20] - C:\Users\Timothée\ntuser.ini [14/09/2017 00:48:32] - |A| - [45] - C:\Users\Timothée\nuuid.ini [22/10/2014 09:25:15] - |RADO| - [179257463] - C:\Users\Timothée\OneDrive [21/10/2014 12:43:07] - |RD| - [11480072] - C:\Users\Timothée\Pictures [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\Recent [21/10/2014 12:43:07] - |RD| - [24046667] - C:\Users\Timothée\Saved Games [21/10/2016 19:03:17] - |D| - [0] - C:\Users\Timothée\Screenshot [22/10/2014 09:22:49] - |RD| - [1875] - C:\Users\Timothée\Searches [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\SendTo [19/09/2019 10:55:23] - |A| - [0] - C:\Users\Timothée\Sti_Trace.log [12/01/2015 16:25:55] - |D| - [1502561] - C:\Users\Timothée\T-Engine [01/07/2019 19:26:39] - |D| - [392992609] - C:\Users\Timothée\tartube [29/08/2015 23:17:38] - |D| - [225058816] - C:\Users\Timothée\Tracing [21/10/2014 12:43:07] - |RD| - [274744] - C:\Users\Timothée\Videos [14/09/2017 00:48:29] - |D| - [18970] - C:\Users\Timothée\vmlogs [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\Voisinage d'impression [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\Voisinage réseau [15/04/2019 18:51:11] - |D| - [7476707912] - C:\Users\Timothée\AppData\Local [22/10/2014 09:22:28] - |D| - [656669481] - C:\Users\Timothée\AppData\LocalLow [15/04/2019 18:51:11] - |D| - [4168242058] - C:\Users\Timothée\AppData\Roaming [03/03/2015 12:30:57] - |D| - [88] - C:\Users\Timothée\AppData\System [30/06/2015 15:56:27] - |D| - [3782] - C:\Users\Timothée\AppData\Local\10_Second_Ninja [24/12/2018 12:31:05] - |D| - [245601] - C:\Users\Timothée\AppData\Local\4kdownload.com [20/02/2015 11:52:54] - |D| - [3653] - C:\Users\Timothée\AppData\Local\AAA_Internet_Publishing,_ [19/10/2018 17:17:50] - |D| - [5767218] - C:\Users\Timothée\AppData\Local\Ableton [27/12/2015 13:05:45] - |D| - [0] - C:\Users\Timothée\AppData\Local\ActiveSync [01/11/2014 19:50:01] - |D| - [0] - C:\Users\Timothée\AppData\Local\Adobe [27/10/2014 17:55:49] - |D| - [0] - C:\Users\Timothée\AppData\Local\Ahri.tw [13/02/2019 02:13:48] - |D| - [0] - C:\Users\Timothée\AppData\Local\Air Labs [19/10/2015 10:40:33] - |D| - [170617605] - C:\Users\Timothée\AppData\Local\AMD [05/08/2017 10:46:01] - |D| - [55278427] - C:\Users\Timothée\AppData\Local\AMDDriverProfiles [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\AppData\Local\Application Data [27/11/2014 19:16:48] - |D| - [29523054] - C:\Users\Timothée\AppData\Local\Apps [04/06/2016 15:58:29] - |D| - [1499] - C:\Users\Timothée\AppData\Local\Aspyr [22/10/2014 09:39:59] - |D| - [98409] - C:\Users\Timothée\AppData\Local\ATI [01/11/2018 12:57:16] - |D| - [1467569] - C:\Users\Timothée\AppData\Local\BANDAI NAMCO Entertainment [17/05/2017 09:00:54] - |D| - [22889864] - C:\Users\Timothée\AppData\Local\Battle.net [06/07/2019 03:21:55] - |D| - [53582] - C:\Users\Timothée\AppData\Local\BitTorrentHelper [27/11/2014 22:22:15] - |D| - [57631] - C:\Users\Timothée\AppData\Local\Black_Tree_Gaming [23/03/2019 23:43:33] - |D| - [2009276] - C:\Users\Timothée\AppData\Local\Blitz [17/05/2017 09:01:02] - |D| - [5100] - C:\Users\Timothée\AppData\Local\Blizzard Entertainment [06/07/2015 10:27:26] - |D| - [10674934] - C:\Users\Timothée\AppData\Local\CEF [10/08/2016 21:23:20] - |D| - [62614] - C:\Users\Timothée\AppData\Local\Choice Provisions [08/08/2015 12:17:28] - |D| - [189932094] - C:\Users\Timothée\AppData\Local\Comms [29/07/2017 15:11:41] - |D| - [4920339] - C:\Users\Timothée\AppData\Local\ConnectedDevicesPlatform [30/03/2016 10:53:20] - |D| - [0] - C:\Users\Timothée\AppData\Local\CrashDumps [04/09/2018 14:43:10] - |D| - [4769188] - C:\Users\Timothée\AppData\Local\D3DSCache [21/04/2018 19:26:08] - |D| - [1555] - C:\Users\Timothée\AppData\Local\Darwin [05/08/2017 17:35:26] - |D| - [0] - C:\Users\Timothée\AppData\Local\DBG [24/11/2016 15:53:05] - |A| - [4608] - C:\Users\Timothée\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [25/10/2014 23:49:18] - |D| - [4297185] - C:\Users\Timothée\AppData\Local\Diagnostics [21/09/2018 17:48:36] - |D| - [350240490] - C:\Users\Timothée\AppData\Local\Discord [14/06/2015 15:40:04] - |D| - [4224] - C:\Users\Timothée\AppData\Local\Disc_Soft_Ltd [02/06/2015 20:02:09] - |D| - [10973] - C:\Users\Timothée\AppData\Local\DOSBox [27/03/2016 15:00:48] - |D| - [1032] - C:\Users\Timothée\AppData\Local\dxhr [04/03/2015 19:52:17] - |D| - [1199312] - C:\Users\Timothée\AppData\Local\ElevatedDiagnostics [18/11/2014 23:45:39] - |SHD| - [0] - C:\Users\Timothée\AppData\Local\EmieBrowserModeList [22/10/2014 09:28:27] - |SHD| - [0] - C:\Users\Timothée\AppData\Local\EmieSiteList [22/10/2014 09:28:27] - |SHD| - [0] - C:\Users\Timothée\AppData\Local\EmieUserList [11/07/2015 20:10:27] - |D| - [144256291] - C:\Users\Timothée\AppData\Local\EpicGamesLauncher [10/11/2015 23:06:21] - |D| - [124] - C:\Users\Timothée\AppData\Local\Fallout4 [28/12/2018 21:07:09] - |D| - [15865] - C:\Users\Timothée\AppData\Local\FileZilla [18/12/2016 14:24:06] - |D| - [989] - C:\Users\Timothée\AppData\Local\Frontier Developments [18/08/2016 16:34:10] - |D| - [6139] - C:\Users\Timothée\AppData\Local\fs-uae [21/04/2018 19:26:02] - |D| - [0] - C:\Users\Timothée\AppData\Local\GameAnalytics [23/10/2014 00:30:14] - |D| - [9714] - C:\Users\Timothée\AppData\Local\Gameforge4d [03/03/2015 11:58:05] - |A| - [104168] - C:\Users\Timothée\AppData\Local\GDIPFONTCACHEV1.DAT [11/02/2015 14:36:37] - |D| - [57655] - C:\Users\Timothée\AppData\Local\Geld_Maker_2 [15/01/2015 22:07:46] - |D| - [2567] - C:\Users\Timothée\AppData\Local\GeometryDash [04/10/2018 17:02:57] - |D| - [4508] - C:\Users\Timothée\AppData\Local\GOG.com [02/04/2018 12:36:59] - |D| - [133] - C:\Users\Timothée\AppData\Local\Goldmine_KEYBINDINGS [22/10/2014 09:28:44] - |D| - [1300247201] - C:\Users\Timothée\AppData\Local\Google [16/06/2015 23:49:58] - |D| - [71] - C:\Users\Timothée\AppData\Local\GWX [01/11/2018 12:56:27] - |D| - [1754] - C:\Users\Timothée\AppData\Local\HeroGame [01/07/2019 15:35:54] - |D| - [4879] - C:\Users\Timothée\AppData\Local\higan [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\AppData\Local\Historique [01/07/2019 15:35:55] - |D| - [0] - C:\Users\Timothée\AppData\Local\icarus [04/09/2019 00:53:13] - |AH| - [116112] - C:\Users\Timothée\AppData\Local\IconCache.db [23/12/2014 20:28:23] - |D| - [0] - C:\Users\Timothée\AppData\Local\JAMMIN [22/02/2015 23:22:00] - |D| - [8526266] - C:\Users\Timothée\AppData\Local\livestreamer-twitch-gui [14/10/2016 22:56:43] - |D| - [0] - C:\Users\Timothée\AppData\Local\Logishrd [17/07/2015 14:46:22] - |D| - [1088773] - C:\Users\Timothée\AppData\Local\Logitech [16/02/2015 23:24:42] - |D| - [0] - C:\Users\Timothée\AppData\Local\LogMeIn [04/12/2014 22:30:03] - |D| - [8824244] - C:\Users\Timothée\AppData\Local\LOOT [29/03/2015 20:51:23] - |D| - [0] - C:\Users\Timothée\AppData\Local\LSI [26/11/2014 23:37:47] - |D| - [0] - C:\Users\Timothée\AppData\Local\Macromedia [24/02/2017 03:12:52] - |D| - [1628] - C:\Users\Timothée\AppData\Local\Maiddog [22/09/2019 23:21:37] - |D| - [813864] - C:\Users\Timothée\AppData\Local\mbam [22/09/2019 23:18:35] - |D| - [235676] - C:\Users\Timothée\AppData\Local\mbamtray [20/09/2015 20:27:35] - |D| - [520614] - C:\Users\Timothée\AppData\Local\Mega Limited [20/07/2017 09:41:11] - |D| - [573542] - C:\Users\Timothée\AppData\Local\MegaMaker [20/09/2015 20:27:30] - |D| - [90139357] - C:\Users\Timothée\AppData\Local\MEGAsync [15/04/2019 18:51:11] - |D| - [724132030] - C:\Users\Timothée\AppData\Local\Microsoft [30/11/2014 18:21:30] - |D| - [310032] - C:\Users\Timothée\AppData\Local\Microsoft Help [08/08/2015 12:31:39] - |D| - [68704] - C:\Users\Timothée\AppData\Local\MicrosoftEdge [26/11/2014 23:37:06] - |D| - [41220981] - C:\Users\Timothée\AppData\Local\Mozilla [17/09/2016 13:36:17] - |D| - [110] - C:\Users\Timothée\AppData\Local\NCSOFT [08/08/2015 23:56:11] - |D| - [0] - C:\Users\Timothée\AppData\Local\NetworkTiles [14/09/2017 00:47:05] - |D| - [2236545] - C:\Users\Timothée\AppData\Local\Nox [27/04/2016 12:17:53] - |D| - [359] - C:\Users\Timothée\AppData\Local\openvr [13/04/2015 21:17:16] - |D| - [0] - C:\Users\Timothée\AppData\Local\Opera Software [17/04/2015 19:52:07] - |D| - [122011518] - C:\Users\Timothée\AppData\Local\Origin [13/01/2016 22:18:57] - |D| - [143539776] - C:\Users\Timothée\AppData\Local\Overwolf [22/03/2018 02:19:53] - |D| - [1899069677] - C:\Users\Timothée\AppData\Local\Packages [22/10/2014 09:23:11] - |D| - [0] - C:\Users\Timothée\AppData\Local\PackageStaging [25/06/2016 10:21:10] - |D| - [64788] - C:\Users\Timothée\AppData\Local\PAYDAY 2 [10/08/2015 08:06:28] - |D| - [0] - C:\Users\Timothée\AppData\Local\PeerDistRepub [11/09/2017 15:54:07] - |D| - [310] - C:\Users\Timothée\AppData\Local\PF7 [04/09/2018 16:43:05] - |D| - [0] - C:\Users\Timothée\AppData\Local\PlaceholderTileLogoFolder [26/02/2016 00:13:49] - |D| - [42749059] - C:\Users\Timothée\AppData\Local\Plantronics [05/08/2016 19:16:16] - |D| - [9353792] - C:\Users\Timothée\AppData\Local\Pokemon Showdown [11/02/2015 14:21:14] - |D| - [0] - C:\Users\Timothée\AppData\Local\Presentable_Liberty [22/10/2014 09:44:57] - |D| - [0] - C:\Users\Timothée\AppData\Local\Programs [08/08/2015 12:19:11] - |D| - [296389] - C:\Users\Timothée\AppData\Local\Publishers [24/10/2014 19:29:00] - |D| - [2865737] - C:\Users\Timothée\AppData\Local\PunkBuster [30/10/2017 11:58:55] - |D| - [1420625] - C:\Users\Timothée\AppData\Local\RadeonInstaller [30/11/2014 20:54:53] - |D| - [40099] - C:\Users\Timothée\AppData\Local\Razer [30/11/2014 20:55:08] - |D| - [3819] - C:\Users\Timothée\AppData\Local\Razer_Inc [27/11/2014 18:48:25] - |D| - [1350] - C:\Users\Timothée\AppData\Local\RJ_Capture [03/09/2016 21:27:19] - |D| - [222915079] - C:\Users\Timothée\AppData\Local\Roblox [17/07/2015 14:29:37] - |D| - [2050] - C:\Users\Timothée\AppData\Local\RzStats [07/03/2015 17:27:57] - |D| - [0] - C:\Users\Timothée\AppData\Local\SCE [31/03/2016 00:09:47] - |D| - [172] - C:\Users\Timothée\AppData\Local\SectorSix045 [17/01/2015 11:21:43] - |D| - [25090] - C:\Users\Timothée\AppData\Local\SKIDROW [09/11/2014 02:32:59] - |D| - [0] - C:\Users\Timothée\AppData\Local\Skype [22/10/2014 14:42:12] - |D| - [2440] - C:\Users\Timothée\AppData\Local\Skyrim [03/03/2015 12:30:57] - |D| - [0] - C:\Users\Timothée\AppData\Local\SmartDraw [27/10/2014 17:52:10] - |D| - [5655576] - C:\Users\Timothée\AppData\Local\Sony [24/11/2016 11:27:59] - |D| - [4700] - C:\Users\Timothée\AppData\Local\speech [28/09/2016 12:04:53] - |D| - [12153389] - C:\Users\Timothée\AppData\Local\Speedify [29/03/2016 15:02:26] - |D| - [21667312] - C:\Users\Timothée\AppData\Local\SquareClock.Production_HBMV1 [29/03/2016 15:02:37] - |A| - [353118] - C:\Users\Timothée\AppData\Local\SquareClock.Production_HBMV1Icon.ico [29/11/2017 18:04:14] - |D| - [984382838] - C:\Users\Timothée\AppData\Local\SquirrelTemp [06/02/2015 19:32:42] - |D| - [633139166] - C:\Users\Timothée\AppData\Local\Steam [17/03/2019 02:31:01] - |D| - [131072] - C:\Users\Timothée\AppData\Local\SteamVR [29/03/2016 14:59:42] - |D| - [10614] - C:\Users\Timothée\AppData\Local\Sun [09/03/2019 15:54:59] - |D| - [3432] - C:\Users\Timothée\AppData\Local\T80MSDrv [30/04/2016 11:35:29] - |D| - [0] - C:\Users\Timothée\AppData\Local\Targem [01/07/2019 19:23:44] - |D| - [97427219] - C:\Users\Timothée\AppData\Local\Tartube [28/01/2017 16:25:39] - |D| - [688496] - C:\Users\Timothée\AppData\Local\TeamSpeak 3 [15/04/2019 18:51:11] - |D| - [1927218] - C:\Users\Timothée\AppData\Local\Temp [18/07/2016 23:42:10] - |D| - [2419144] - C:\Users\Timothée\AppData\Local\Tempdivx06b1 [15/06/2016 23:18:27] - |D| - [1017800] - C:\Users\Timothée\AppData\Local\Tempdivx190a [30/03/2016 20:57:29] - |D| - [1017800] - C:\Users\Timothée\AppData\Local\Tempdivx1fd5 [15/07/2016 19:31:18] - |D| - [2419144] - C:\Users\Timothée\AppData\Local\Tempdivx2825 [09/06/2016 21:41:09] - |D| - [1017800] - C:\Users\Timothée\AppData\Local\Tempdivx575f [19/06/2016 17:24:26] - |D| - [1017800] - C:\Users\Timothée\AppData\Local\Tempdivx8f4b [14/03/2016 20:53:30] - |D| - [1012720] - C:\Users\Timothée\AppData\Local\Tempdivx9617 [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\AppData\Local\Temporary Internet Files [08/08/2015 12:17:17] - |D| - [18783418] - C:\Users\Timothée\AppData\Local\TileDataLayer [30/04/2016 00:58:17] - |D| - [149] - C:\Users\Timothée\AppData\Local\TJoC_R [25/06/2019 03:23:56] - |D| - [3224056] - C:\Users\Timothée\AppData\Local\Turbo.net [24/10/2014 19:24:43] - |D| - [5062] - C:\Users\Timothée\AppData\Local\Ubisoft Game Launcher [03/04/2016 22:47:56] - |D| - [4606] - C:\Users\Timothée\AppData\Local\UNDERTALE [23/12/2014 20:34:18] - |D| - [0] - C:\Users\Timothée\AppData\Local\Unity [30/04/2016 00:58:17] - |D| - [268] - C:\Users\Timothée\AppData\Local\UnrealEngine [11/07/2015 20:10:28] - |D| - [0] - C:\Users\Timothée\AppData\Local\UnrealEngineLauncher [14/07/2015 16:30:53] - |D| - [27] - C:\Users\Timothée\AppData\Local\UnrealTournament [22/10/2014 09:22:47] - |D| - [65196683] - C:\Users\Timothée\AppData\Local\VirtualStore [24/06/2018 11:07:55] - |D| - [2698] - C:\Users\Timothée\AppData\Local\visualboyadvance-m [27/11/2014 19:56:30] - |D| - [882] - C:\Users\Timothée\AppData\Local\WDSetup [15/10/2018 20:50:53] - |D| - [222] - C:\Users\Timothée\AppData\Local\WorldsTourUE4 [30/05/2018 22:37:18] - |D| - [253647] - C:\Users\Timothée\AppData\LocalLow\11BitStudios [01/11/2014 18:15:44] - |AD| - [18474167] - C:\Users\Timothée\AppData\LocalLow\Adblock Plus for IE [25/12/2018 03:52:04] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\AMD [17/04/2015 14:43:07] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\AMPLITUDE Studios [10/03/2017 19:51:42] - |D| - [1410] - C:\Users\Timothée\AppData\LocalLow\Berserk Games [04/07/2018 14:54:31] - |D| - [32787] - C:\Users\Timothée\AppData\LocalLow\Berzerk Studio [03/07/2019 01:05:51] - |D| - [5114] - C:\Users\Timothée\AppData\LocalLow\bigtapir [30/05/2017 21:21:03] - |D| - [622] - C:\Users\Timothée\AppData\LocalLow\Boneloaf [29/06/2015 15:55:21] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\Clewcat Games [06/06/2018 17:13:17] - |D| - [1356] - C:\Users\Timothée\AppData\LocalLow\Codemaster [29/10/2016 19:24:57] - |D| - [11996] - C:\Users\Timothée\AppData\LocalLow\Considerable Content [11/07/2017 14:15:36] - |D| - [21702] - C:\Users\Timothée\AppData\LocalLow\DefaultCompany [05/04/2016 17:56:32] - |D| - [1156969] - C:\Users\Timothée\AppData\LocalLow\Dodge Roll [14/11/2014 23:15:02] - |SHD| - [0] - C:\Users\Timothée\AppData\LocalLow\EmieBrowserModeList [22/10/2014 09:28:24] - |SHD| - [0] - C:\Users\Timothée\AppData\LocalLow\EmieSiteList [22/10/2014 09:28:29] - |SHD| - [0] - C:\Users\Timothée\AppData\LocalLow\EmieUserList [25/03/2015 18:02:45] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\GadgetGames [06/06/2018 17:07:20] - |D| - [4227] - C:\Users\Timothée\AppData\LocalLow\Good Pidge Productions [06/12/2017 16:38:27] - |D| - [20714] - C:\Users\Timothée\AppData\LocalLow\GreenSphereStudios [01/07/2019 20:34:38] - |D| - [17708] - C:\Users\Timothée\AppData\LocalLow\Hopoo Games, LLC [04/05/2019 01:46:29] - |D| - [704735] - C:\Users\Timothée\AppData\LocalLow\IronOak Games [05/07/2019 11:24:14] - |D| - [22603] - C:\Users\Timothée\AppData\LocalLow\JustUsLab [21/09/2019 18:29:59] - |D| - [9174921] - C:\Users\Timothée\AppData\LocalLow\Klei Entertainment [09/10/2016 12:47:14] - |D| - [2260027] - C:\Users\Timothée\AppData\LocalLow\Landfall [01/07/2019 20:46:59] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\Legend Studio [06/07/2019 12:52:29] - |D| - [1586] - C:\Users\Timothée\AppData\LocalLow\Levi D. Smith [06/07/2019 12:52:39] - |D| - [283] - C:\Users\Timothée\AppData\LocalLow\Levi D_ Smith [27/09/2018 17:30:49] - |D| - [6103] - C:\Users\Timothée\AppData\LocalLow\MasterIndie [22/10/2014 09:22:29] - |SD| - [2584098] - C:\Users\Timothée\AppData\LocalLow\Microsoft [06/07/2019 12:41:03] - |D| - [2728] - C:\Users\Timothée\AppData\LocalLow\Midnight Art Show [27/09/2018 17:34:03] - |D| - [2889] - C:\Users\Timothée\AppData\LocalLow\Mommys Best Games [14/11/2017 19:09:48] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\Mozilla [03/07/2019 01:43:11] - |D| - [100282] - C:\Users\Timothée\AppData\LocalLow\MuHa Games [20/07/2018 11:57:32] - |D| - [13802441] - C:\Users\Timothée\AppData\LocalLow\N-Fusion Interactive [03/07/2019 14:26:43] - |D| - [43572636] - C:\Users\Timothée\AppData\LocalLow\Neal And Jonah [08/03/2017 14:09:17] - |D| - [1416] - C:\Users\Timothée\AppData\LocalLow\NinjaStar [19/09/2019 20:19:58] - |D| - [15761062] - C:\Users\Timothée\AppData\LocalLow\NoBrakesGames [27/09/2019 19:52:59] - |D| - [30737] - C:\Users\Timothée\AppData\LocalLow\Nolla_Games_Noita [19/05/2015 21:17:04] - |D| - [400295936] - C:\Users\Timothée\AppData\LocalLow\Oracle [28/11/2016 23:44:40] - |D| - [3776] - C:\Users\Timothée\AppData\LocalLow\Out of Bounds Games [20/06/2016 18:41:09] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\Pipeworks [12/08/2016 12:30:03] - |D| - [2031991] - C:\Users\Timothée\AppData\LocalLow\Pixellore [26/06/2018 22:43:55] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\PROTeam [19/10/2015 20:26:00] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\Ramjet Anvil [03/09/2016 21:27:20] - |A| - [244] - C:\Users\Timothée\AppData\LocalLow\rbxcsettings.rbx [11/07/2018 01:17:19] - |D| - [7299] - C:\Users\Timothée\AppData\LocalLow\Redbeet Interactive [04/10/2018 17:13:49] - |D| - [583] - C:\Users\Timothée\AppData\LocalLow\Refract [04/04/2016 21:52:29] - |D| - [4542097] - C:\Users\Timothée\AppData\LocalLow\Robot Gentleman [07/03/2015 17:27:57] - |D| - [1128613] - C:\Users\Timothée\AppData\LocalLow\Sony Online Entertainment [29/03/2016 15:02:26] - |D| - [62928401] - C:\Users\Timothée\AppData\LocalLow\SquareClock.Production_HBMV1 [09/08/2018 17:34:21] - |D| - [13997] - C:\Users\Timothée\AppData\LocalLow\srylain Inc_ [06/07/2019 12:31:48] - |D| - [9417] - C:\Users\Timothée\AppData\LocalLow\Stellar Sky Games [30/05/2017 21:13:19] - |D| - [70591] - C:\Users\Timothée\AppData\LocalLow\Streets of Rogue [22/10/2014 09:35:37] - |D| - [43316571] - C:\Users\Timothée\AppData\LocalLow\Sun [03/09/2019 14:57:55] - |D| - [868517] - C:\Users\Timothée\AppData\LocalLow\SuperDuperGameCompany [16/07/2018 18:10:11] - |D| - [677040] - C:\Users\Timothée\AppData\LocalLow\Team 17 Digital ltd_ [11/09/2017 14:38:06] - |D| - [1509] - C:\Users\Timothée\AppData\LocalLow\Team Dogpit [03/06/2018 11:51:09] - |D| - [1860] - C:\Users\Timothée\AppData\LocalLow\Team HalfBeard [25/08/2019 11:22:24] - |D| - [42945] - C:\Users\Timothée\AppData\LocalLow\Thorium Entertainment [20/06/2016 17:45:52] - |D| - [756322] - C:\Users\Timothée\AppData\LocalLow\Trash [07/07/2019 00:26:50] - |D| - [1048] - C:\Users\Timothée\AppData\LocalLow\Trion Team [23/12/2014 20:34:17] - |D| - [0] - C:\Users\Timothée\AppData\LocalLow\Unity [06/07/2019 03:21:46] - |D| - [65536] - C:\Users\Timothée\AppData\LocalLow\uTorrent [30/04/2016 01:20:09] - |D| - [86] - C:\Users\Timothée\AppData\LocalLow\Vidas Šalavejus [07/12/2018 00:25:18] - |D| - [31874136] - C:\Users\Timothée\AppData\LocalLow\Wizards Of The Coast [30/07/2015 23:51:57] - |D| - [1177641997] - C:\Users\Timothée\AppData\Roaming\.minecraft [01/01/2018 17:23:22] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\.mono [16/03/2016 17:34:04] - |D| - [1068] - C:\Users\Timothée\AppData\Roaming\.tlauncher [30/06/2015 16:25:22] - |D| - [201463] - C:\Users\Timothée\AppData\Roaming\0RBITALIS [01/07/2019 20:06:22] - |D| - [108313470] - C:\Users\Timothée\AppData\Roaming\4kdownload.com [19/10/2018 17:17:50] - |D| - [428424] - C:\Users\Timothée\AppData\Roaming\Ableton [22/10/2014 09:22:47] - |D| - [14499060] - C:\Users\Timothée\AppData\Roaming\Adobe [13/02/2019 02:08:46] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Air Labs [04/11/2014 23:43:08] - |D| - [65033633] - C:\Users\Timothée\AppData\Roaming\AMD [27/07/2017 16:57:51] - |D| - [281] - C:\Users\Timothée\AppData\Roaming\ArcApp [22/10/2014 09:39:59] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\ATI [01/04/2016 16:36:25] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Awesomium [19/04/2017 16:34:28] - |D| - [5574] - C:\Users\Timothée\AppData\Roaming\Battle.net [07/01/2018 16:15:55] - |D| - [33] - C:\Users\Timothée\AppData\Roaming\Battlerite [04/12/2014 18:57:51] - |D| - [13580] - C:\Users\Timothée\AppData\Roaming\be.gip.twitch.TeeBoard [18/05/2015 22:51:44] - |D| - [1028] - C:\Users\Timothée\AppData\Roaming\be.gip.twitch.TMSViewer [23/03/2019 23:43:51] - |D| - [211045478] - C:\Users\Timothée\AppData\Roaming\Blitz [23/03/2019 23:43:54] - |D| - [14108904] - C:\Users\Timothée\AppData\Roaming\blitz-frontend [28/01/2016 21:35:22] - |D| - [759] - C:\Users\Timothée\AppData\Roaming\BrawlhallaAir [26/12/2014 21:15:17] - |D| - [1761332] - C:\Users\Timothée\AppData\Roaming\ClassicShell [12/01/2015 21:23:39] - |D| - [2094] - C:\Users\Timothée\AppData\Roaming\Codeusa Software [25/03/2015 11:10:58] - |D| - [11022] - C:\Users\Timothée\AppData\Roaming\com.bossa.ddd [21/07/2015 19:09:58] - |D| - [219] - C:\Users\Timothée\AppData\Roaming\com.somasim.fortynine [24/06/2018 20:33:54] - |D| - [769] - C:\Users\Timothée\AppData\Roaming\CreamAPI [23/03/2016 14:29:45] - |D| - [1958] - C:\Users\Timothée\AppData\Roaming\Curse Advertising [19/10/2018 17:21:09] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Cycling '74 [16/04/2015 09:41:04] - |D| - [1872678] - C:\Users\Timothée\AppData\Roaming\DAEMON Tools Lite [16/04/2015 10:22:39] - |D| - [8253582] - C:\Users\Timothée\AppData\Roaming\DarkSoulsII [15/10/2016 13:30:51] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\DevPro, LLC [29/11/2017 18:04:24] - |D| - [514129748] - C:\Users\Timothée\AppData\Roaming\discord [17/03/2015 23:06:47] - |D| - [98818] - C:\Users\Timothée\AppData\Roaming\DivX [20/02/2015 21:17:18] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\DMCache [31/05/2016 19:44:01] - |D| - [203] - C:\Users\Timothée\AppData\Roaming\dvdcss [20/03/2016 13:25:48] - |D| - [6814] - C:\Users\Timothée\AppData\Roaming\Epson [21/03/2016 19:19:07] - |D| - [41212] - C:\Users\Timothée\AppData\Roaming\FileZilla [04/06/2016 12:32:19] - |D| - [4799] - C:\Users\Timothée\AppData\Roaming\fofix [18/12/2016 14:24:06] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Frontier Developments [18/08/2016 16:35:05] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\fs-uae [22/01/2019 01:59:17] - |D| - [336962] - C:\Users\Timothée\AppData\Roaming\Game [06/12/2017 16:31:57] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Godot [29/04/2017 14:51:00] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Google [13/08/2016 03:24:59] - |D| - [4319480] - C:\Users\Timothée\AppData\Roaming\HelloGames [21/03/2015 15:05:27] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Identities [09/03/2019 14:02:08] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\InstallShield [02/05/2015 14:59:38] - |D| - [1364] - C:\Users\Timothée\AppData\Roaming\Intel Corporation [27/11/2014 18:52:16] - |D| - [36743296] - C:\Users\Timothée\AppData\Roaming\IQUALIF France Yellow [30/07/2015 23:51:58] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\java [11/10/2018 17:51:07] - |D| - [73422] - C:\Users\Timothée\AppData\Roaming\KC Softwares [12/04/2015 12:17:24] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\library_dir [04/09/2017 11:13:38] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Lite [22/02/2015 23:17:49] - |D| - [2250] - C:\Users\Timothée\AppData\Roaming\livestreamer [17/07/2015 14:44:31] - |D| - [251281] - C:\Users\Timothée\AppData\Roaming\Logishrd [17/07/2015 14:44:31] - |D| - [5807] - C:\Users\Timothée\AppData\Roaming\Logitech [22/10/2014 09:26:20] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\LolClient [27/02/2016 18:37:56] - |D| - [95879] - C:\Users\Timothée\AppData\Roaming\LOVE [22/10/2014 09:26:18] - |D| - [316809] - C:\Users\Timothée\AppData\Roaming\Macromedia [08/02/2019 15:11:07] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Maschinen-Mensch [06/06/2017 12:20:40] - |D| - [1341] - C:\Users\Timothée\AppData\Roaming\mGBA [15/04/2019 18:51:11] - |SD| - [6897812] - C:\Users\Timothée\AppData\Roaming\Microsoft [04/04/2015 19:17:39] - |D| - [28493] - C:\Users\Timothée\AppData\Roaming\mIRC [27/02/2016 18:28:24] - |D| - [496872] - C:\Users\Timothée\AppData\Roaming\MotioninJoy [07/03/2017 17:38:04] - |D| - [4] - C:\Users\Timothée\AppData\Roaming\Mount&Blade Warband [26/11/2014 23:37:06] - |D| - [44269900] - C:\Users\Timothée\AppData\Roaming\Mozilla [12/08/2015 15:53:01] - |D| - [43074] - C:\Users\Timothée\AppData\Roaming\Mumble [24/02/2017 03:16:31] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Mupen64Plus [17/09/2016 13:36:17] - |D| - [109998] - C:\Users\Timothée\AppData\Roaming\NCSOFT [04/12/2014 18:50:23] - |D| - [701188] - C:\Users\Timothée\AppData\Roaming\OBS [07/07/2018 18:39:20] - |D| - [2294734] - C:\Users\Timothée\AppData\Roaming\obs-studio [27/11/2014 00:16:23] - |D| - [12350540] - C:\Users\Timothée\AppData\Roaming\OpenOffice [13/04/2015 21:17:16] - |D| - [3216312] - C:\Users\Timothée\AppData\Roaming\Opera Software [24/04/2015 21:12:27] - |D| - [6057893] - C:\Users\Timothée\AppData\Roaming\Orbit [17/04/2015 19:52:08] - |D| - [63391] - C:\Users\Timothée\AppData\Roaming\Origin [20/07/2017 21:30:04] - |D| - [236] - C:\Users\Timothée\AppData\Roaming\PowerISO [27/10/2014 17:54:23] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Publish Providers [12/08/2015 15:59:02] - |D| - [704] - C:\Users\Timothée\AppData\Roaming\puush [07/06/2016 12:17:35] - |D| - [102] - C:\Users\Timothée\AppData\Roaming\Raptr [18/10/2017 21:58:18] - |D| - [1252232] - C:\Users\Timothée\AppData\Roaming\RenPy [05/08/2016 21:38:17] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Riot Games [12/01/2016 14:41:07] - |D| - [202166] - C:\Users\Timothée\AppData\Roaming\Samsung [09/11/2014 02:32:58] - |D| - [158096723] - C:\Users\Timothée\AppData\Roaming\Skype [27/02/2016 18:37:51] - |D| - [30956] - C:\Users\Timothée\AppData\Roaming\SmartSteamEmu [27/10/2014 17:54:20] - |D| - [1508] - C:\Users\Timothée\AppData\Roaming\Sony [15/06/2018 23:25:50] - |D| - [12186] - C:\Users\Timothée\AppData\Roaming\sp6_log [31/03/2016 01:04:46] - |D| - [3162267] - C:\Users\Timothée\AppData\Roaming\SpaceImpossible [04/11/2015 00:54:21] - |D| - [4076866] - C:\Users\Timothée\AppData\Roaming\SpinTires [25/06/2019 23:08:39] - |D| - [5248] - C:\Users\Timothée\AppData\Roaming\starcheat [11/07/2018 00:50:16] - |D| - [13101301] - C:\Users\Timothée\AppData\Roaming\StardewValley [16/04/2015 10:22:36] - |D| - [1541] - C:\Users\Timothée\AppData\Roaming\Steam [03/02/2015 18:45:31] - |D| - [149] - C:\Users\Timothée\AppData\Roaming\steam.transformice.com [31/08/2015 21:18:44] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Sun [22/10/2014 09:38:25] - |D| - [560352] - C:\Users\Timothée\AppData\Roaming\SystemRequirementsLab [23/10/2014 00:32:12] - |D| - [2088123] - C:\Users\Timothée\AppData\Roaming\TERA [10/02/2016 13:26:14] - |D| - [1184846] - C:\Users\Timothée\AppData\Roaming\The Witness [27/11/2014 19:19:46] - |D| - [730] - C:\Users\Timothée\AppData\Roaming\Touche Software [22/10/2014 20:12:44] - |D| - [24872972] - C:\Users\Timothée\AppData\Roaming\TS3Client [27/01/2017 11:57:38] - |D| - [440040516] - C:\Users\Timothée\AppData\Roaming\Twitch [05/09/2017 16:26:57] - |D| - [28] - C:\Users\Timothée\AppData\Roaming\ubi.com [23/12/2014 20:36:04] - |D| - [503] - C:\Users\Timothée\AppData\Roaming\Unity [20/08/2015 10:06:31] - |D| - [64695] - C:\Users\Timothée\AppData\Roaming\uplay [23/12/2014 22:56:46] - |D| - [41711179] - C:\Users\Timothée\AppData\Roaming\uTorrent [27/12/2014 00:47:14] - |D| - [1511991] - C:\Users\Timothée\AppData\Roaming\vlc [11/07/2018 01:19:47] - |D| - [12] - C:\Users\Timothée\AppData\Roaming\WinRAR [19/02/2016 21:03:21] - |A| - [600] - C:\Users\Timothée\AppData\Roaming\winscp.rnd [15/10/2016 13:33:04] - |AD| - [1240103224] - C:\Users\Timothée\AppData\Roaming\YGOPro DevPro Launcher [22/10/2014 09:22:49] - |SH| - [174] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini [29/03/2016 15:02:37] - |A| - [2199] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\HomeByMe.lnk [14/09/2017 00:48:22] - |D| - [2173] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Nox [15/04/2019 18:51:11] - |SHD| - [0] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes [06/09/2016 13:08:44] - |RD| - [101847] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs [24/12/2018 12:30:56] - |A| - [966] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\4K Video Downloader.lnk [17/10/2018 22:10:47] - |A| - [871] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ableton Live 10 Suite.lnk [15/04/2019 18:51:11] - |RD| - [3888] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility [15/04/2019 18:51:11] - |RD| - [2925] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [22/10/2014 09:22:49] - |RD| - [174] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [16/04/2015 00:00:54] - |D| - [8336] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome [23/03/2019 23:43:53] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz Inc [23/03/2016 14:29:35] - |D| - [485] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse [15/04/2019 18:51:11] - |SH| - [264] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\desktop.ini [29/11/2017 18:04:24] - |D| - [2303] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc [02/06/2015 19:23:26] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EA Games [29/03/2016 14:59:42] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\eTeks Sweet Home 3D [04/06/2016 12:32:02] - |D| - [2261] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FoFiX [08/08/2015 12:41:53] - |A| - [1047] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fonctionnalités optionnelles.lnk [16/04/2015 00:00:49] - |D| - [2345] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome [27/12/2015 17:58:13] - |A| - [1976] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\isaactracker.lnk [08/11/2016 20:11:42] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\League client alpha [29/03/2015 20:51:23] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LSI - LoL Summoner Information [15/04/2019 18:51:11] - |D| - [170] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [20/09/2015 20:27:32] - |D| - [4715] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync [31/05/2016 20:14:33] - |D| - [2972] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Midnight Racing [04/12/2014 18:50:13] - |D| - [2978] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software [24/10/2015 01:05:16] - |A| - [798] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\osu!.lnk [13/01/2016 22:20:35] - |D| - [6448] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf [07/03/2015 17:27:45] - |A| - [2536] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlanetSide 2.lnk [05/08/2016 19:15:49] - |A| - [2129] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokemon Showdown.lnk [30/10/2014 23:02:43] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokémon Gemme [03/09/2016 21:27:22] - |D| - [2789] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox [22/10/2014 09:22:49] - |RD| - [1311] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [15/04/2019 18:51:11] - |RD| - [4913] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools [01/07/2019 19:23:56] - |A| - [2520] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tartube.lnk [19/10/2015 21:50:49] - |A| - [1256] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Beginner's Guide.lnk [29/07/2015 16:29:09] - |D| - [15607] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Klub 17 [19/07/2018 19:28:36] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch Games [29/10/2017 16:26:59] - |A| - [1002] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk [24/10/2014 19:24:33] - |D| - [2551] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft [01/07/2019 20:14:01] - |D| - [3448] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinDirStat [15/04/2019 18:51:11] - |RD| - [7754] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell [11/07/2018 01:19:32] - |D| - [4705] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR [18/01/2016 01:38:42] - |D| - [2252] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Worlds [27/12/2014 12:45:07] - |D| - [0] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XBCD [15/10/2016 13:33:04] - |D| - [1152] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YGOPro DevPro Launcher [22/10/2014 09:22:49] - |SH| - [174] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini [20/09/2015 20:29:06] - |A| - [1137] - C:\Users\Timothée\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk ---------- | [Timoth?e] [23/10/2014 00:30:16] - |D| - [0] - C:\Users\Timoth?e\Downloads ---------- | C:\ProgramData [01/01/2018 17:23:22] - |D| - [0] - C:\ProgramData\.mono [17/10/2018 22:11:06] - |D| - [2619295769] - C:\ProgramData\Ableton [04/12/2014 18:57:09] - |D| - [0] - C:\ProgramData\Adobe [22/10/2014 09:41:25] - |D| - [0] - C:\ProgramData\AMD [15/04/2019 19:26:10] - |SHD| - [0] - C:\ProgramData\Application Data [25/12/2018 04:25:14] - |D| - [187] - C:\ProgramData\ATI [19/04/2017 16:33:55] - |D| - [22049489] - C:\ProgramData\Battle.net [10/09/2019 10:26:21] - |D| - [1471606] - C:\ProgramData\Blizzard Entertainment [30/11/2015 20:05:29] - |D| - [0] - C:\ProgramData\boost_interprocess [22/10/2014 08:41:29] - |SHD| - [0] - C:\ProgramData\Bureau [02/12/2016 15:16:09] - |D| - [1992130560] - C:\ProgramData\Codemasters [16/07/2016 13:47:48] - |D| - [0] - C:\ProgramData\Comms [16/04/2015 09:40:25] - |D| - [2936] - C:\ProgramData\DAEMON Tools Lite [17/03/2015 22:53:29] - |D| - [14776816] - C:\ProgramData\DivX [15/04/2019 19:26:10] - |SHD| - [0] - C:\ProgramData\Documents [27/08/2015 11:49:37] - |AD| - [2012185] - C:\ProgramData\DriversCloud.com [17/04/2015 19:49:38] - |D| - [577] - C:\ProgramData\Electronic Arts [11/07/2015 20:09:29] - |D| - [87141047] - C:\ProgramData\Epic [20/03/2016 13:10:41] - |D| - [20744037] - C:\ProgramData\Epson [22/10/2014 08:41:29] - |SHD| - [0] - C:\ProgramData\Favoris [08/02/2018 23:49:55] - |D| - [2018627] - C:\ProgramData\Garena [09/06/2016 19:53:10] - |D| - [396467498] - C:\ProgramData\GOG.com [16/04/2015 00:03:06] - |D| - [2113] - C:\ProgramData\Google [07/09/2019 23:24:16] - |RA| - [32] - C:\ProgramData\hash.dat [20/02/2015 21:17:18] - |D| - [0] - C:\ProgramData\IDM [22/10/2014 09:48:38] - |D| - [61190030] - C:\ProgramData\Intel [17/07/2015 14:46:23] - |D| - [23059926] - C:\ProgramData\LogiShrd [16/02/2015 23:24:42] - |D| - [0] - C:\ProgramData\LogMeIn [22/10/2014 09:32:40] - |D| - [5568519] - C:\ProgramData\ma-config.com [28/02/2015 20:57:57] - |D| - [110399698] - C:\ProgramData\Malwarebytes [12/04/2016 17:53:31] - |D| - [2714847194] - C:\ProgramData\ManiaPlanet [19/10/2018 17:21:09] - |D| - [0] - C:\ProgramData\Max 8 [22/10/2014 08:41:29] - |SHD| - [0] - C:\ProgramData\Menu Démarrer [15/09/2018 09:33:50] - |SD| - [1215596825] - C:\ProgramData\Microsoft [30/11/2014 18:21:28] - |D| - [65262] - C:\ProgramData\Microsoft Help [15/04/2019 20:09:07] - |D| - [25] - C:\ProgramData\Microsoft OneDrive [22/10/2014 08:41:29] - |SHD| - [0] - C:\ProgramData\Modèles [16/10/2015 17:44:47] - |D| - [5557892] - C:\ProgramData\Mozilla [08/08/2015 12:16:57] - |RASH| - [576] - C:\ProgramData\ntuser.pol [22/10/2014 09:37:00] - |D| - [154920003] - C:\ProgramData\Oracle [17/04/2015 19:49:38] - |D| - [371445519] - C:\ProgramData\Origin [13/01/2016 22:20:14] - |D| - [612570591] - C:\ProgramData\Overwolf [22/10/2014 09:33:07] - |D| - [138235885] - C:\ProgramData\Package Cache [04/09/2018 14:48:35] - |D| - [147456] - C:\ProgramData\Packages [26/02/2016 00:13:02] - |AD| - [27712339] - C:\ProgramData\Plantronics [28/07/2017 23:27:17] - |D| - [483937822] - C:\ProgramData\Razer [15/09/2018 09:33:50] - |D| - [997] - C:\ProgramData\regid.1991-06.com.microsoft [22/10/2014 09:26:06] - |D| - [39] - C:\ProgramData\Riot Games [12/01/2016 14:41:59] - |D| - [239614] - C:\ProgramData\Samsung [09/11/2014 02:32:53] - |D| - [172363776] - C:\ProgramData\Skype [15/09/2018 09:33:50] - |D| - [0] - C:\ProgramData\SoftwareDistribution [25/02/2017 22:30:18] - |A| - [60] - C:\ProgramData\SoftwareUpdateTemp.xml [27/10/2014 17:52:10] - |D| - [3146565] - C:\ProgramData\Sony [30/06/2015 16:12:17] - |D| - [5681] - C:\ProgramData\Steam [22/10/2014 09:37:12] - |D| - [224] - C:\ProgramData\Sun [30/04/2016 11:36:02] - |D| - [38] - C:\ProgramData\TargemGames [27/11/2015 18:04:38] - |D| - [47235] - C:\ProgramData\TP-LINK [03/04/2016 11:23:47] - |D| - [620451123] - C:\ProgramData\TrackMania [17/04/2016 11:12:31] - |D| - [586546583] - C:\ProgramData\TrackmaniaTurbo [27/01/2017 11:57:43] - |D| - [11796301] - C:\ProgramData\Twitch [15/09/2018 09:33:50] - |D| - [24313] - C:\ProgramData\USOPrivate [15/04/2019 18:50:13] - |D| - [10448896] - C:\ProgramData\USOShared [15/09/2018 18:39:06] - |D| - [0] - C:\ProgramData\WindowsHolographicDevices [22/01/2019 02:04:14] - |D| - [22884] - C:\ProgramData\X360CE ---------- | C:\ProgramData\Microsoft\Windows\Start Menu [15/09/2018 09:31:34] - |ASH| - [174] - C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini [06/11/2018 03:58:20] - |D| - [868] - C:\ProgramData\Microsoft\Windows\Start Menu\Hextech Repair Tool [22/10/2014 08:41:29] - |SHD| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programmes [15/09/2018 09:33:50] - |RD| - [442162] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs ---------- | C:\ProgramData\Microsoft\Windows\Start Menu\Programs [09/02/2018 14:13:30] - |D| - [3719] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\505 Games [23/10/2014 23:59:05] - |D| - [1557] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip [15/09/2018 09:33:50] - |RD| - [1614] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility [15/09/2018 09:33:50] - |RD| - [13063] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories [15/09/2018 09:33:50] - |RD| - [25478] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools [04/12/2014 18:57:44] - |D| - [2168] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Air [04/04/2015 18:27:52] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirStrike II DEMO [25/12/2018 04:25:08] - |D| - [4175] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center [29/01/2017 10:55:27] - |D| - [1957] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Problem Report Wizard [25/12/2018 04:22:26] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings [17/05/2017 09:00:47] - |D| - [896] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Application Blizzard [08/11/2014 00:04:24] - |D| - [4018] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assistant Smart Wizard NETGEAR pour WG111v3 [10/11/2015 23:01:09] - |D| - [2581] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Studios [12/01/2015 21:23:37] - |D| - [5371] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Borderless Gaming [12/12/2018 02:12:37] - |D| - [3927] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Deluxe Edition [22/05/2017 11:30:08] - |D| - [963] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [09/10/2016 12:47:24] - |D| - [2741] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clustertruck [GOG.com] [17/09/2017 12:37:20] - |D| - [3638] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CMake 3.0.0 [07/06/2016 15:36:12] - |D| - [2838] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID [19/10/2015 21:45:20] - |D| - [944] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite [16/07/2018 22:46:22] - |D| - [3445] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dead Cells [GOG.com] [15/09/2018 09:31:34] - |ASH| - [530] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\desktop.ini [10/09/2019 11:04:45] - |D| - [882] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III [06/07/2019 17:40:57] - |D| - [2282] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DiRT Rally 2 0 [04/10/2018 17:13:32] - |D| - [2188] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Distance [17/03/2015 23:06:33] - |D| - [4905] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX [30/08/2016 19:30:41] - |D| - [1461] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolphin [02/06/2015 20:02:05] - |D| - [13632] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74 [15/08/2015 13:18:12] - |D| - [112] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dream [GOG.com] [07/09/2018 18:50:52] - |D| - [2967] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com [04/06/2016 15:57:25] - |D| - [7196] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Drum Controller Standard Tuning Kit [02/06/2015 19:23:26] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games [17/03/2016 18:21:53] - |D| - [5253] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes [11/10/2017 15:49:49] - |A| - [1270] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk [20/03/2016 13:12:20] - |D| - [2170] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON [20/03/2016 13:12:38] - |D| - [3617] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software [13/04/2015 21:11:58] - |D| - [4531] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow [21/03/2016 19:18:47] - |D| - [2013] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client [26/11/2014 23:37:00] - |A| - [1005] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk [27/10/2014 17:16:57] - |D| - [2712] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps [16/04/2015 10:20:56] - |D| - [3161] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\From Software [23/10/2014 00:30:07] - |D| - [2299] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live [17/07/2018 10:59:33] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games [30/03/2016 11:29:16] - |D| - [6301] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GanttProject [08/02/2018 23:49:57] - |D| - [2528] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garena [09/06/2016 19:53:17] - |D| - [1148] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com [22/10/2014 09:29:43] - |A| - [2299] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk [28/04/2017 10:59:01] - |D| - [2224] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grinding Gear Games [05/09/2017 17:08:56] - |D| - [5885] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hexplore [21/09/2019 00:08:05] - |D| - [2462] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hot Lava [11/06/2015 22:45:34] - |RD| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hyper-V Management Tools [19/10/2016 00:14:36] - |D| - [2324] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I-Doser Premium [15/09/2018 09:29:46] - |RAS| - [2349] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk [22/10/2014 09:48:48] - |RD| - [6042] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel [23/05/2018 17:18:14] - |A| - [1406] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Interface utilisateur du client Microsoft App-V 5.0.lnk [22/10/2014 09:37:06] - |D| - [6425] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java [11/10/2018 17:50:50] - |D| - [2681] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KC Softwares [06/11/2018 04:16:50] - |D| - [2078] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends [10/08/2017 15:24:58] - |D| - [962] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightworks [17/07/2015 14:45:56] - |D| - [4313] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech [04/12/2014 22:30:03] - |D| - [2940] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LOOT [15/09/2018 09:33:50] - |D| - [170] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance [07/10/2019 00:07:03] - |D| - [3896] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes [03/06/2018 11:39:07] - |D| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Max Payne 2 The Fall of Max Payne [30/11/2014 18:24:01] - |D| - [32512] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office [02/05/2015 15:19:50] - |D| - [2338] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight [16/03/2016 17:27:03] - |D| - [1048] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft [04/04/2015 19:17:39] - |D| - [4965] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mIRC [30/05/2018 22:36:54] - |D| - [2290] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Moonlighter [27/02/2016 18:28:19] - |D| - [1988] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy [27/12/2018 02:18:54] - |D| - [2700] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mr DJ [22/10/2014 09:49:55] - |D| - [4353] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI [07/12/2018 00:24:27] - |D| - [2233] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MTG Arena [12/08/2015 15:52:35] - |D| - [1101] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble [16/09/2019 02:07:44] - |D| - [3354] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\My IP Suite [30/06/2017 20:26:40] - |A| - [1149] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk [06/08/2016 17:31:41] - |D| - [3990] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NETGEAR WN111 Smart Wizard [27/11/2014 21:20:48] - |D| - [3007] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager [13/08/2016 03:24:59] - |D| - [3698] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\No Man's Sky [GOG.com] [05/09/2017 15:55:22] - |D| - [14879] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NovaLogic [07/07/2018 18:39:15] - |D| - [3719] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio [27/11/2014 00:14:29] - |SD| - [7392] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 [24/04/2015 21:13:12] - |D| - [131] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Orbit [17/04/2015 19:49:38] - |D| - [1815] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin [22/06/2019 02:18:34] - |D| - [1744] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PBE [23/08/2016 15:34:31] - |D| - [6803] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2 [25/06/2019 03:23:29] - |D| - [4249] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFArea [21/06/2016 19:41:09] - |D| - [8109] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Phase Shift [26/02/2016 00:13:06] - |D| - [1218] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plantronics [30/05/2019 11:12:45] - |D| - [6955] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO [20/05/2015 18:51:41] - |D| - [2214] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Project 64 2.2 [12/08/2015 15:58:58] - |D| - [1012] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\puush [30/06/2015 10:05:33] - |D| - [9054] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7 [31/12/2014 20:11:05] - |D| - [3330] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer [24/12/2014 15:25:37] - |D| - [1319] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RomStation [12/01/2016 14:41:12] - |D| - [4456] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung [30/04/2017 12:45:03] - |D| - [2137] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype [03/03/2015 12:30:54] - |D| - [1249] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartDraw CI [27/10/2014 17:52:18] - |D| - [2249] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony [27/11/2014 18:07:31] - |D| - [1888] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpaceEngine [09/03/2019 14:05:36] - |D| - [4647] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPEEDLINK [25/06/2019 22:58:41] - |D| - [2558] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Starbound Bounty Hunter [23/09/2017 20:37:21] - |D| - [2738] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Starbound [GOG.com] [15/09/2018 09:33:50] - |RD| - [7581] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp [15/09/2018 09:33:50] - |RD| - [1458] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools [30/10/2015 21:03:12] - |RHD| - [0] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC [08/11/2018 19:58:50] - |D| - [2599] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tales Of Berseria [22/10/2014 20:12:11] - |D| - [1990] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client [08/02/2019 15:10:53] - |D| - [2823] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Curious Expedition [GOG.com] [16/07/2018 18:35:10] - |D| - [1725] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Escapists 2 [06/08/2016 16:55:29] - |D| - [2510] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK [27/01/2017 11:57:00] - |D| - [3526] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Twitch Launcher [06/09/2017 13:38:43] - |D| - [4534] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubi Soft [05/09/2017 16:26:57] - |D| - [4011] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ubi.com [09/03/2019 15:55:00] - |A| - [1161] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uninstall ZELOTES T-80.lnk [27/12/2014 00:46:56] - |D| - [7188] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN [09/11/2018 16:16:32] - |D| - [4983] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vJoy [05/04/2016 11:48:32] - |D| - [2482] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vulkan 1.0.3.1 [14/06/2015 15:41:42] - |D| - [2330] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WarCraft 3 [25/03/2019 11:23:14] - |D| - [3651] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WB Games [09/01/2019 18:31:46] - |D| - [2095] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live [15/04/2019 18:54:30] - |A| - [1576] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk [11/07/2018 01:19:32] - |D| - [4633] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR [19/02/2016 20:40:15] - |A| - [1134] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk [27/12/2014 12:45:08] - |D| - [2753] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XBCD [09/03/2019 15:55:00] - |A| - [1116] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZELOTES T-80.lnk ---------- | C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup [08/11/2014 00:04:30] - |A| - [2089] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Assistant Smart Wizard NETGEAR pour WG311v3.lnk [15/09/2018 09:31:34] - |ASH| - [174] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini [08/11/2014 00:04:30] - |A| - [2089] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WG111v3 Smart Wizard.lnk [06/08/2016 17:31:42] - |A| - [2180] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WN111 Smart Wizard.lnk [07/11/2014 23:28:54] - |A| - [1049] - C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Play Wireless USB Adapter Utility.lnk ---------- | C:\Program Files (x86) [09/02/2018 14:12:39] - |D| - [1329358954] - C:\Program Files (x86)\505 Games [20/05/2015 18:51:31] - |D| - [3511045] - C:\Program Files (x86)\7-Zip [04/06/2016 15:57:24] - |D| - [1275630] - C:\Program Files (x86)\Activision [04/12/2014 18:57:07] - |D| - [340940] - C:\Program Files (x86)\Adobe [25/06/2016 10:21:02] - |D| - [0] - C:\Program Files (x86)\AGEIA Technologies [04/12/2014 18:57:43] - |D| - [13427410] - C:\Program Files (x86)\Air [17/05/2016 11:30:47] - |AD| - [690341927] - C:\Program Files (x86)\AMD [27/11/2014 20:22:43] - |D| - [53616994] - C:\Program Files (x86)\ANNUCAPT 64Bits [04/06/2016 15:38:29] - |D| - [8048331885] - C:\Program Files (x86)\Aspyr [24/06/2016 22:50:36] - |AD| - [28590961] - C:\Program Files (x86)\Batch Picture Resizer [25/10/2014 23:51:51] - |D| - [5438579] - C:\Program Files (x86)\Belkin [10/11/2015 22:19:05] - |D| - [32074155834] - C:\Program Files (x86)\Bethesda Studios [14/09/2017 00:48:11] - |D| - [84614458] - C:\Program Files (x86)\Bignox [17/05/2017 08:59:12] - |AD| - [412045657] - C:\Program Files (x86)\Blizzard App [12/01/2015 21:23:36] - |AD| - [1445470] - C:\Program Files (x86)\Borderless Gaming [26/02/2016 00:13:04] - |AD| - [163952] - C:\Program Files (x86)\BroadSoft [12/12/2018 02:10:57] - |D| - [2201316617] - C:\Program Files (x86)\Call of Duty Deluxe Edition [17/09/2017 12:36:47] - |D| - [34521542] - C:\Program Files (x86)\CMake [15/09/2018 09:33:50] - |D| - [503963459] - C:\Program Files (x86)\Common Files [27/01/2016 20:11:23] - |D| - [2434408] - C:\Program Files (x86)\CSR [01/05/2016 15:50:59] - |AD| - [3977991002] - C:\Program Files (x86)\DeadCore [15/09/2018 09:31:34] - |ASH| - [174] - C:\Program Files (x86)\desktop.ini [10/09/2019 10:32:40] - |D| - [15729786775] - C:\Program Files (x86)\Diablo III [04/09/2017 19:25:13] - |D| - [0] - C:\Program Files (x86)\directx [06/07/2019 17:17:17] - |D| - [50749502323] - C:\Program Files (x86)\DiRT Rally 2 0 [04/10/2018 17:12:38] - |D| - [2354496810] - C:\Program Files (x86)\Distance [17/03/2015 22:54:00] - |D| - [232462477] - C:\Program Files (x86)\DivX [02/06/2015 20:02:04] - |D| - [4507970] - C:\Program Files (x86)\DOSBox-0.74 [17/03/2016 18:21:53] - |D| - [2264265] - C:\Program Files (x86)\Elaborate Bytes [11/10/2017 15:49:42] - |AD| - [394409095] - C:\Program Files (x86)\Epic Games [20/03/2016 13:12:19] - |D| - [2812166] - C:\Program Files (x86)\epson [20/03/2016 13:12:38] - |AD| - [53777799] - C:\Program Files (x86)\EPSON Software [13/04/2015 21:11:57] - |AD| - [13824088] - C:\Program Files (x86)\ffdshow [09/06/2016 19:53:10] - |AD| - [150197260] - C:\Program Files (x86)\GalaxyClient [23/10/2014 00:30:05] - |AD| - [66292986] - C:\Program Files (x86)\GameforgeLive [30/03/2016 11:29:15] - |D| - [16724979] - C:\Program Files (x86)\GanttProject-2.7 [08/02/2018 23:49:26] - |D| - [194662534] - C:\Program Files (x86)\Garena [27/07/2017 16:58:30] - |D| - [0] - C:\Program Files (x86)\Gigantic_fr [22/10/2014 09:28:47] - |D| - [547324291] - C:\Program Files (x86)\Google [28/04/2017 10:59:01] - |D| - [20912039] - C:\Program Files (x86)\Grinding Gear Games [05/09/2017 17:07:03] - |D| - [371322853] - C:\Program Files (x86)\Hexplore [21/09/2019 00:04:43] - |D| - [8391701422] - C:\Program Files (x86)\Hot Lava [19/10/2016 00:14:35] - |D| - [23537997] - C:\Program Files (x86)\I-Doser Premium [22/10/2014 09:45:37] - |HD| - [47684812] - C:\Program Files (x86)\InstallShield Installation Information [22/10/2014 09:48:37] - |D| - [176949363] - C:\Program Files (x86)\Intel [15/09/2018 09:33:50] - |D| - [1986331] - C:\Program Files (x86)\Internet Explorer [27/12/2015 17:58:01] - |D| - [142916077] - C:\Program Files (x86)\isaactracker [22/10/2014 09:36:55] - |D| - [202636200] - C:\Program Files (x86)\Java [11/10/2018 17:50:49] - |D| - [6113823] - C:\Program Files (x86)\KC Softwares [22/02/2015 23:22:45] - |D| - [9589444] - C:\Program Files (x86)\Livestreamer [04/12/2014 22:30:02] - |D| - [8112561] - C:\Program Files (x86)\LOOT [23/05/2018 17:18:14] - |D| - [4855330] - C:\Program Files (x86)\Microsoft Application Virtualization [30/11/2014 18:21:28] - |AD| - [586181522] - C:\Program Files (x86)\Microsoft Office [02/05/2015 15:19:14] - |AD| - [42892246] - C:\Program Files (x86)\Microsoft Silverlight [27/11/2014 18:48:13] - |AD| - [3242367] - C:\Program Files (x86)\Microsoft SQL Server Compact Edition [27/11/2014 18:48:13] - |D| - [343335] - C:\Program Files (x86)\Microsoft Synchronization Services [30/11/2014 18:23:21] - |D| - [14904] - C:\Program Files (x86)\Microsoft Visual Studio [30/11/2014 18:21:43] - |AD| - [1387249] - C:\Program Files (x86)\Microsoft Visual Studio 8 [30/11/2014 18:23:41] - |D| - [3726168] - C:\Program Files (x86)\Microsoft Works [16/02/2015 23:02:27] - |D| - [11664185] - C:\Program Files (x86)\Microsoft XNA [15/09/2018 09:33:50] - |D| - [8175999] - C:\Program Files (x86)\Microsoft.NET [31/05/2016 20:14:33] - |D| - [37343979] - C:\Program Files (x86)\Midnight Racing [16/03/2016 17:27:03] - |AD| - [296383679] - C:\Program Files (x86)\Minecraft [04/04/2015 19:17:38] - |AD| - [5292880] - C:\Program Files (x86)\mIRC [30/05/2018 22:35:36] - |D| - [3733502666] - C:\Program Files (x86)\Moonlighter [26/11/2014 23:36:58] - |AD| - [88345943] - C:\Program Files (x86)\Mozilla Firefox [16/10/2015 17:44:47] - |D| - [375224] - C:\Program Files (x86)\Mozilla Maintenance Service [27/12/2018 02:13:40] - |D| - [3779934329] - C:\Program Files (x86)\Mr DJ [15/04/2019 17:32:22] - |D| - [26521] - C:\Program Files (x86)\MSBuild [22/10/2014 09:44:58] - |D| - [16116626] - C:\Program Files (x86)\MSI [12/08/2015 15:52:05] - |AD| - [35898786] - C:\Program Files (x86)\Mumble [16/09/2019 02:07:44] - |D| - [1607373] - C:\Program Files (x86)\My IP Suite [08/11/2014 00:04:26] - |D| - [15496208] - C:\Program Files (x86)\NETGEAR [05/09/2017 15:51:16] - |D| - [1076131429] - C:\Program Files (x86)\NovaLogic [14/09/2017 00:47:38] - |D| - [2494701824] - C:\Program Files (x86)\Nox [25/06/2016 10:21:02] - |D| - [9969134] - C:\Program Files (x86)\NVIDIA Corporation [04/12/2014 18:50:11] - |D| - [107059910] - C:\Program Files (x86)\OBS [07/07/2018 18:38:56] - |D| - [432965213] - C:\Program Files (x86)\obs-studio [15/08/2015 13:18:25] - |D| - [809496] - C:\Program Files (x86)\OpenAL [27/11/2014 00:14:07] - |AD| - [327250814] - C:\Program Files (x86)\OpenOffice 4 [13/04/2015 21:08:18] - |AD| - [360566400] - C:\Program Files (x86)\Opera [17/04/2015 19:49:36] - |AD| - [395606368] - C:\Program Files (x86)\Origin [13/01/2016 22:20:20] - |AD| - [1029750700] - C:\Program Files (x86)\Overwolf [24/10/2014 13:29:58] - |D| - [20940893] - C:\Program Files (x86)\PCSX2 1.2.1 [25/06/2019 03:23:29] - |D| - [4982213] - C:\Program Files (x86)\PDFArea [21/06/2016 19:39:18] - |D| - [494856511] - C:\Program Files (x86)\Phase Shift [26/02/2016 00:13:02] - |D| - [82060844] - C:\Program Files (x86)\Plantronics [05/08/2016 19:15:47] - |D| - [82222071] - C:\Program Files (x86)\Pokemon Showdown [07/09/2016 23:00:42] - |D| - [283581557] - C:\Program Files (x86)\Pokemon Uranium Team [20/05/2015 18:51:39] - |AD| - [10277465] - C:\Program Files (x86)\Project64 2.2 [07/03/2015 17:27:38] - |D| - [0] - C:\Program Files (x86)\PS2 [12/08/2015 15:58:58] - |AD| - [568904] - C:\Program Files (x86)\puush [12/04/2015 12:16:25] - |D| - [262144] - C:\Program Files (x86)\Raptr [07/06/2016 12:17:18] - |D| - [381173391] - C:\Program Files (x86)\Raptr Inc [28/07/2017 23:26:55] - |AD| - [222412377] - C:\Program Files (x86)\Razer [22/10/2014 09:45:37] - |D| - [5627405] - C:\Program Files (x86)\Realtek [15/04/2019 17:32:22] - |D| - [39336705] - C:\Program Files (x86)\Reference Assemblies [12/01/2016 14:41:04] - |D| - [98362803] - C:\Program Files (x86)\Samsung [30/04/2017 12:45:02] - |RD| - [90082581] - C:\Program Files (x86)\Skype [27/10/2014 17:52:10] - |D| - [39393904] - C:\Program Files (x86)\Sony [09/03/2019 14:05:30] - |D| - [15598384] - C:\Program Files (x86)\SPEEDLINK [25/06/2019 22:55:57] - |D| - [2615210959] - C:\Program Files (x86)\Starbound Bounty Hunter [19/04/2017 16:36:07] - |D| - [986171635] - C:\Program Files (x86)\StarCraft [21/10/2014 16:44:28] - |D| - [329834819881] - C:\Program Files (x86)\Steam [22/10/2014 09:38:29] - |AD| - [1186864] - C:\Program Files (x86)\SystemRequirementsLab [08/11/2018 19:51:23] - |D| - [14722661437] - C:\Program Files (x86)\Tales of Berseria [22/10/2014 09:46:32] - |HD| - [0] - C:\Program Files (x86)\Temp [19/10/2015 21:48:33] - |D| - [3478268948] - C:\Program Files (x86)\The Beginner's Guide [19/07/2018 18:12:13] - |D| - [202014] - C:\Program Files (x86)\Twitch [27/01/2017 11:56:49] - |AD| - [541390990] - C:\Program Files (x86)\Twitch Launcher [06/09/2017 13:38:43] - |D| - [416361523] - C:\Program Files (x86)\Ubi Soft [05/09/2017 16:26:54] - |D| - [10926253] - C:\Program Files (x86)\ubi.com [24/10/2014 19:24:30] - |D| - [33909722016] - C:\Program Files (x86)\Ubisoft [28/07/2017 23:27:27] - |HD| - [0] - C:\Program Files (x86)\Uninstall Information [27/12/2014 00:46:49] - |D| - [169082076] - C:\Program Files (x86)\VideoLAN [05/04/2016 11:48:31] - |D| - [18298578] - C:\Program Files (x86)\VulkanRT [25/03/2019 11:21:40] - |D| - [1834759496] - C:\Program Files (x86)\WB Games [04/08/2016 10:45:23] - |D| - [1723448] - C:\Program Files (x86)\Winamp [01/07/2019 20:14:01] - |D| - [812064] - C:\Program Files (x86)\WinDirStat [15/09/2018 09:33:50] - |D| - [1719928] - C:\Program Files (x86)\Windows Defender [09/01/2019 18:31:44] - |D| - [30351603] - C:\Program Files (x86)\Windows Live [15/09/2018 09:33:50] - |D| - [625152] - C:\Program Files (x86)\Windows Mail [15/09/2018 18:39:06] - |D| - [3241325] - C:\Program Files (x86)\Windows Media Player [15/09/2018 18:39:06] - |D| - [40432] - C:\Program Files (x86)\Windows Multimedia Platform [15/09/2018 09:33:50] - |D| - [7557464] - C:\Program Files (x86)\windows nt [15/09/2018 18:39:06] - |D| - [5325328] - C:\Program Files (x86)\Windows Photo Viewer [15/09/2018 18:39:06] - |D| - [40432] - C:\Program Files (x86)\Windows Portable Devices [15/09/2018 09:33:50] - |SHD| - [0] - C:\Program Files (x86)\Windows Sidebar [15/09/2018 09:33:50] - |D| - [3156995] - C:\Program Files (x86)\WindowsPowerShell [11/07/2018 01:19:21] - |D| - [6321282] - C:\Program Files (x86)\WinRAR [19/02/2016 20:40:13] - |AD| - [25769237] - C:\Program Files (x86)\WinSCP [07/12/2018 00:24:27] - |D| - [2090285190] - C:\Program Files (x86)\Wizards of the Coast [18/01/2016 01:38:39] - |D| - [18647333] - C:\Program Files (x86)\Worlds [27/12/2014 12:45:07] - |D| - [57484] - C:\Program Files (x86)\XBCD [09/03/2019 15:54:59] - |D| - [8102146] - C:\Program Files (x86)\ZELOTES T-80 ---------- | C:\Program Files [24/12/2018 12:30:55] - |D| - [78915891] - C:\Program Files\4KDownload [23/10/2014 23:59:04] - |D| - [5174232] - C:\Program Files\7-Zip [24/04/2015 00:20:38] - |AD| - [6912660] - C:\Program Files\Adblock Plus for IE [28/07/2017 23:26:12] - |AD| - [371565112] - C:\Program Files\AMD [22/10/2014 09:39:52] - |D| - [45087] - C:\Program Files\ATI [22/05/2017 11:30:05] - |AD| - [51123008] - C:\Program Files\CCleaner [26/12/2014 21:14:42] - |AD| - [7360995] - C:\Program Files\Classic Shell [15/09/2018 09:33:50] - |D| - [127349707] - C:\Program Files\Common Files [07/06/2016 15:36:12] - |D| - [4528937] - C:\Program Files\CPUID [27/01/2016 20:11:07] - |D| - [143693910] - C:\Program Files\CSR [19/10/2015 21:45:14] - |D| - [29195871] - C:\Program Files\DAEMON Tools Lite [15/09/2018 09:31:34] - |ASH| - [174] - C:\Program Files\desktop.ini [14/01/2016 23:38:22] - |D| - [1755096] - C:\Program Files\DIFX [12/04/2015 19:19:00] - |D| - [0] - C:\Program Files\DigiPen [30/08/2016 19:30:35] - |AD| - [25206243484] - C:\Program Files\Dolphin [27/12/2017 19:01:42] - |D| - [18808096] - C:\Program Files\Dolphin2 [27/08/2015 11:49:37] - |AD| - [19418204] - C:\Program Files\DriversCloud.com [11/07/2015 20:09:28] - |AD| - [14526431303] - C:\Program Files\Epic Games [20/03/2016 13:21:54] - |D| - [6588457] - C:\Program Files\EpsonNet [22/10/2014 08:41:29] - |SHD| - [0] - C:\Program Files\Fichiers communs [21/03/2016 19:18:45] - |AD| - [27283606] - C:\Program Files\FileZilla FTP Client [22/10/2014 09:45:16] - |D| - [154482028] - C:\Program Files\Intel [15/09/2018 09:33:50] - |D| - [2645302] - C:\Program Files\internet explorer [25/10/2018 23:48:20] - |D| - [507072748] - C:\Program Files\Java [10/08/2017 15:23:34] - |D| - [349077236] - C:\Program Files\Lightworks [14/10/2016 22:54:05] - |D| - [62752106] - C:\Program Files\Logitech [17/07/2015 14:45:43] - |D| - [359734229] - C:\Program Files\Logitech Gaming Software [22/10/2014 09:32:40] - |D| - [1518] - C:\Program Files\ma-config.com [22/09/2019 23:18:09] - |D| - [173597573] - C:\Program Files\Malwarebytes [30/11/2014 18:21:46] - |D| - [593814] - C:\Program Files\Microsoft Office [02/05/2015 15:19:14] - |AD| - [55725526] - C:\Program Files\Microsoft Silverlight [27/11/2014 18:48:14] - |AD| - [4421503] - C:\Program Files\Microsoft SQL Server Compact Edition [27/11/2014 18:48:14] - |D| - [343335] - C:\Program Files\Microsoft Synchronization Services [27/02/2016 18:28:18] - |AD| - [3854382] - C:\Program Files\MotioninJoy [08/09/2019 02:33:03] - |D| - [401138859] - C:\Program Files\Mozilla Firefox [15/04/2019 17:32:22] - |D| - [25757] - C:\Program Files\MSBuild [27/11/2014 21:20:46] - |AD| - [17253870] - C:\Program Files\Nexus Mod Manager [04/12/2014 18:50:12] - |D| - [132581059] - C:\Program Files\OBS [11/06/2015 23:17:14] - |D| - [181357935] - C:\Program Files\Oracle [20/08/2016 12:49:36] - |AD| - [13498271] - C:\Program Files\PowerISO [06/10/2017 12:55:41] - |D| - [44013720] - C:\Program Files\Realtek [15/04/2019 17:32:22] - |D| - [37741225] - C:\Program Files\Reference Assemblies [19/03/2018 16:52:15] - |AD| - [25286585] - C:\Program Files\rempl [12/01/2016 14:42:56] - |D| - [28564106] - C:\Program Files\Samsung [27/10/2014 17:52:10] - |D| - [642987803] - C:\Program Files\Sony [04/03/2015 23:12:34] - |D| - [266835] - C:\Program Files\TAP-Windows [22/10/2014 20:12:09] - |AD| - [183170479] - C:\Program Files\TeamSpeak 3 Client [10/07/2015 14:21:54] - |HD| - [0] - C:\Program Files\Uninstall Information [19/06/2019 13:08:34] - |D| - [13142040] - C:\Program Files\UNP [09/11/2018 15:49:33] - |D| - [1810070] - C:\Program Files\VB [09/11/2018 16:16:31] - |D| - [26468143] - C:\Program Files\vJoy [17/02/2015 12:59:17] - |D| - [13838304] - C:\Program Files\Waterfox [15/09/2018 09:33:50] - |RD| - [28152166] - C:\Program Files\Windows Defender [15/09/2018 18:39:06] - |D| - [13322504] - C:\Program Files\Windows Defender Advanced Threat Protection [15/09/2018 09:33:50] - |D| - [636416] - C:\Program Files\Windows Mail [15/09/2018 18:39:06] - |D| - [4716945] - C:\Program Files\Windows Media Player [15/09/2018 18:39:06] - |D| - [47512] - C:\Program Files\Windows Multimedia Platform [15/09/2018 09:33:50] - |D| - [7888728] - C:\Program Files\windows nt [15/09/2018 18:39:06] - |D| - [6135112] - C:\Program Files\Windows Photo Viewer [15/09/2018 18:39:06] - |D| - [47512] - C:\Program Files\Windows Portable Devices [15/09/2018 09:33:50] - |D| - [110373] - C:\Program Files\Windows Security [15/09/2018 09:33:50] - |SHD| - [0] - C:\Program Files\Windows Sidebar [15/09/2018 09:33:50] - |HD| - [3475306431] - C:\Program Files\WindowsApps [15/09/2018 09:33:50] - |D| - [3454389] - C:\Program Files\WindowsPowerShell ---------- | C:\Program Files (x86)\Common Files [04/12/2014 18:57:07] - |AD| - [30852929] - C:\Program Files (x86)\Common Files\Adobe AIR [01/05/2016 20:34:55] - |D| - [15389232] - C:\Program Files (x86)\Common Files\BattlEye [02/12/2014 08:43:01] - |AD| - [99992] - C:\Program Files (x86)\Common Files\DESIGNER [17/03/2015 23:06:28] - |D| - [128486919] - C:\Program Files (x86)\Common Files\DivX Shared [23/07/2015 11:56:30] - |HD| - [4984] - C:\Program Files (x86)\Common Files\EAInstaller [22/10/2014 09:46:27] - |D| - [4761960] - C:\Program Files (x86)\Common Files\InstallShield [02/05/2015 15:00:23] - |D| - [243917] - C:\Program Files (x86)\Common Files\Intel Corporation [17/07/2019 13:53:29] - |D| - [2034520] - C:\Program Files (x86)\Common Files\Java [15/09/2018 09:33:50] - |D| - [267406057] - C:\Program Files (x86)\Common Files\microsoft shared [17/07/2019 13:53:43] - |D| - [1534880] - C:\Program Files (x86)\Common Files\Oracle [13/01/2016 22:20:20] - |D| - [2107760] - C:\Program Files (x86)\Common Files\Overwolf [05/09/2017 16:26:54] - |D| - [662081] - C:\Program Files (x86)\Common Files\PocketSoft [22/10/2014 09:48:46] - |D| - [196972] - C:\Program Files (x86)\Common Files\PostureAgent [15/09/2018 09:33:50] - |D| - [2702] - C:\Program Files (x86)\Common Files\Services [28/05/2017 10:27:16] - |AD| - [2574296] - C:\Program Files (x86)\Common Files\Skype [22/10/2014 09:29:55] - |D| - [4090299] - C:\Program Files (x86)\Common Files\Steam [04/09/2017 19:25:16] - |D| - [0] - C:\Program Files (x86)\Common Files\SWF Studio [15/09/2018 09:33:50] - |D| - [43513959] - C:\Program Files (x86)\Common Files\system ---------- | C:\Program Files\Common files [25/12/2018 04:20:55] - |D| - [3638408] - C:\Program Files\Common files\ATI Technologies [20/03/2016 13:22:12] - |D| - [152640] - C:\Program Files\Common files\EPSON [14/10/2016 22:53:48] - |D| - [40823944] - C:\Program Files\Common files\LogiShrd [15/09/2018 09:33:50] - |D| - [69836033] - C:\Program Files\Common files\microsoft shared [26/02/2016 00:13:02] - |AD| - [92001] - C:\Program Files\Common files\Plantronics [17/10/2018 22:21:56] - |D| - [2507776] - C:\Program Files\Common files\Propellerhead Software [15/09/2018 09:33:50] - |D| - [2702] - C:\Program Files\Common files\Services [15/09/2018 09:33:50] - |D| - [10296203] - C:\Program Files\Common files\system ---------- | Tasks [MD5.A917D742B8004417761069C78989B1EF] - [22/03/2018 02:31:36] - |A| - [458] - C:\WINDOWS\Tasks\gxx speed launcher.job [MD5.F1A6CD5ADAAB953A6764EA364E17BFB8] - [15/04/2019 19:25:48] - |AH| - [6] - C:\WINDOWS\Tasks\SA.DAT [MD5.99A00B5FAB62D51F8453F7B87679BF00] - [15/04/2019 19:25:47] - |A| - [4758] - C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_255_Plugin.exe [MD5.C77DB3AFD6289EC65CD86044698E93C7] - [15/04/2019 19:25:47] - |A| - [4558] - C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater : C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [MD5.0F6DD16234FE02BC9550225A81516826] - [15/04/2019 19:25:47] - |A| - [3936] - C:\WINDOWS\System32\Tasks\CCleaner Update : C:\Program Files\CCleaner\CCUpdate.exe [MD5.8D317F18912005DC5178A32D062516F8] - [15/04/2019 19:25:47] - |A| - [2218] - C:\WINDOWS\System32\Tasks\CCleanerSkipUAC : "C:\Program Files\CCleaner\CCleaner.exe" [MD5.840648C619A36E58802F94060E235292] - [15/04/2019 19:25:47] - |A| - [2772] - C:\WINDOWS\System32\Tasks\DivXUpdate : C:\Program Files (x86)\Common Files\DivX Shared\DivX Update\DivXUpdate.exe [MD5.E976ED8DCC6301F569071651DE12FB86] - [15/04/2019 19:25:47] - |A| - [3464] - C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore : C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [MD5.3DD85DD81A0D075046BFC5D670907C3B] - [15/04/2019 19:25:47] - |A| - [3588] - C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA : C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [MD5.00000000000000000000000000000000] - [15/04/2019 19:25:47] - |D| - [0] - C:\WINDOWS\System32\Tasks\Intel(R) Small Business Advantage [MD5.00000000000000000000000000000000] - [15/04/2019 19:25:47] - |D| - [2812] - C:\WINDOWS\System32\Tasks\MEGA [MD5.00000000000000000000000000000000] - [15/09/2018 09:33:50] - |D| - [654822] - C:\WINDOWS\System32\Tasks\Microsoft [MD5.6753DCA36D3DA85E36A8B4AD2088337C] - [15/04/2019 19:25:48] - |A| - [3974] - C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1428952627 : C:\Program Files (x86)\Opera\launcher.exe [MD5.7C17F22A82AB52C2BA1CA029A9B8D9B0] - [15/04/2019 19:25:48] - |A| - [2938] - C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-364868280-2578744981-2741750218-1000 : C:\Program Files (x86)\Opera\launcher.exe [MD5.BC0CC70445A49BA01F4B3579C60733C1] - [15/04/2019 19:25:48] - |A| - [2668] - C:\WINDOWS\System32\Tasks\Overwolf Updater Task : C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [MD5.00000000000000000000000000000000] - [15/04/2019 19:25:48] - |D| - [2958] - C:\WINDOWS\System32\Tasks\S-1-5-21-364868280-2578744981-2741750218-1000 [MD5.00000000000000000000000000000000] - [15/04/2019 19:25:48] - |D| - [0] - C:\WINDOWS\System32\Tasks\WPD [MD5.00000000000000000000000000000000] - [15/09/2018 09:33:51] - |D| - [0] - C:\WINDOWS\Syswow64\Tasks\Microsoft ---------- | Firewall [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\FirewallRules] "WirelessDisplay-Infra-In-TCP"=v2.29|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=7250|App=%systemroot%\system32\CastSrv.exe|Name=@wifidisplay.dll,-10206|Desc=@wifidisplay.dll,-10207|EmbedCtxt=@wifidisplay.dll,-100| "WirelessDisplay-Out-UDP"=v2.29|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|App=%systemroot%\system32\WUDFHost.exe|Name=@wifidisplay.dll,-10204|Desc=@wifidisplay.dll,-10205|LUAuth=O:LSD:(A;;CC;;;S-1-5-84-0-0-0-0-0)|EmbedCtxt=@wifidisplay.dll,-100|TTK2_22=WFDDisplay| "WirelessDisplay-Out-TCP"=v2.29|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|App=%systemroot%\system32\WUDFHost.exe|Name=@wifidisplay.dll,-10202|Desc=@wifidisplay.dll,-10203|LUAuth=O:LSD:(A;;CC;;;S-1-5-84-0-0-0-0-0)|EmbedCtxt=@wifidisplay.dll,-100|TTK2_22=WFDDisplay| "WirelessDisplay-In-TCP"=v2.29|Action=Allow|Active=TRUE|Dir=In|Protocol=6|App=%systemroot%\system32\WUDFHost.exe|Name=@wifidisplay.dll,-10200|Desc=@wifidisplay.dll,-10201|LUAuth=O:LSD:(A;;CC;;;S-1-5-84-0-0-0-0-0)|EmbedCtxt=@wifidisplay.dll,-100|TTK2_22=WFDDisplay| "Netlogon-TCP-RPC-In"=v2.29|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=RPC|App=%SystemRoot%\System32\lsass.exe|Name=@netlogon.dll,-1008|Desc=@netlogon.dll,-1009|EmbedCtxt=@netlogon.dll,-1010| "Netlogon-NamedPipe-In"=v2.29|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=445|App=System|Name=@netlogon.dll,-1003|Desc=@netlogon.dll,-1006|EmbedCtxt=@netlogon.dll,-1010| "DeliveryOptimization-UDP-In"=v2.29|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=7680|App=%SystemRoot%\system32\svchost.exe|Svc=dosvc|Name=@%systemroot%\system32\dosvc.dll,-103|Desc=@%systemroot%\system32\dosvc.dll,-104|EmbedCtxt=@%systemroot%\system32\dosvc.dll,-100|Edge=TRUE| "DeliveryOptimization-TCP-In"=v2.29|Action=Allow|Active=TRUE|Dir=In|Protocol=6|LPort=7680|App=%SystemRoot%\system32\svchost.exe|Svc=dosvc|Name=@%systemroot%\system32\dosvc.dll,-102|Desc=@%systemroot%\system32\dosvc.dll,-104|EmbedCtxt=@%systemroot%\system32\dosvc.dll,-100|Edge=TRUE| "WiFiDirect-KM-Driver-Out-UDP"=v2.29|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|App=System|Name=@wlansvc.dll,-37381|Desc=@wlansvc.dll,-37893|EmbedCtxt=@wlansvc.dll,-36865|TTK2_27=WFDKmDriver| "WiFiDirect-KM-Driver-In-UDP"=v2.29|Action=Allow|Active=TRUE|Dir=In|Protocol=17|App=System|Name=@wlansvc.dll,-37380|Desc=@wlansvc.dll,-37892|EmbedCtxt=@wlansvc.dll,-36865|TTK2_27=WFDKmDriver| "WiFiDirect-KM-Driver-Out-TCP"=v2.29|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|App=System|Name=@wlansvc.dll,-37379|Desc=@wlansvc.dll,-37891|EmbedCtxt=@wlansvc.dll,-36865|TTK2_27=WFDKmDriver| "WiFiDirect-KM-Driver-In-TCP"=v2.29|Action=Allow|Active=TRUE|Dir=In|Protocol=6|App=System|Name=@wlansvc.dll,-37378|Desc=@wlansvc.dll,-37890|EmbedCtxt=@wlansvc.dll,-36865|TTK2_27=WFDKmDriver| "TCP Query User{89535576-6079-40CB-A1B5-731E00DD0302}C:\program files (x86)\epson software\event manager\eeventmanager.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\program files (x86)\epson software\event manager\eeventmanager.exe|Name=EEventManager Application|Desc=EEventManager Application|Defer=User| "UDP Query User{FCBB91D5-CAA8-4EAC-BD5D-1CE40D8E1929}C:\program files (x86)\epson software\event manager\eeventmanager.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\program files (x86)\epson software\event manager\eeventmanager.exe|Name=EEventManager Application|Desc=EEventManager Application|Defer=User| "TCP Query User{46E53CD3-A3D5-4649-B463-3AF27200B599}C:\program files (x86)\google\chrome\application\chrome.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\program files (x86)\google\chrome\application\chrome.exe|Name=Google Chrome|Desc=Google Chrome|Defer=User| "UDP Query User{FDF4494D-0B65-4A39-BCC6-666E33868B0A}C:\program files (x86)\google\chrome\application\chrome.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\program files (x86)\google\chrome\application\chrome.exe|Name=Google Chrome|Desc=Google Chrome|Defer=User| "TCP Query User{0B3C7F75-A4CF-48AA-A25F-AE90D05E747A}C:\program files (x86)\epson software\event manager\eeventmanager.exe"=v2.10|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files (x86)\epson software\event manager\eeventmanager.exe|Name=EEventManager Application|Desc=EEventManager Application| "UDP Query User{56635B31-4501-42A3-B754-41F2F4E6025C}C:\program files (x86)\epson software\event manager\eeventmanager.exe"=v2.10|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files (x86)\epson software\event manager\eeventmanager.exe|Name=EEventManager Application|Desc=EEventManager Application| "TCP Query User{43990842-C6D2-4849-ADBC-DE1E8F7D7BD5}C:\program files (x86)\google\chrome\application\chrome.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\program files (x86)\google\chrome\application\chrome.exe|Name=Google Chrome|Desc=Google Chrome|Defer=User| "UDP Query User{1A459A51-2ABB-4F7A-BFB4-FD13C46ADDD0}C:\program files (x86)\google\chrome\application\chrome.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\program files (x86)\google\chrome\application\chrome.exe|Name=Google Chrome|Desc=Google Chrome|Defer=User| "{91ED6815-5434-4D1B-AA2B-2B0A3329AB1C}"=v2.29|Action=Allow|Active=TRUE|Dir=Out|Profile=Domain|Profile=Private|Profile=Public|Name=OneNote|Desc=OneNote|LUOwn=S-1-5-21-364868280-2578744981-2741750218-1000|AppPkgId=S-1-15-2-3445883232-1224167743-206467785-1580939083-2750001491-3097792036-3019341970|EmbedCtxt=OneNote|Platform=2:6:2|Platform2=GTEQ| "{85BC4EFF-7CFD-4DA2-B9A5-0262502D74BB}"=v2.29|Action=Allow|Active=TRUE|Dir=In|Profile=Domain|Profile=Private|Name=OneNote|Desc=OneNote|LUOwn=S-1-5-21-364868280-2578744981-2741750218-1000|AppPkgId=S-1-15-2-3445883232-1224167743-206467785-1580939083-2750001491-3097792036-3019341970|EmbedCtxt=OneNote|Platform=2:6:2|Platform2=GTEQ| "{D08BA359-DDBA-4F9E-9841-AC461098562D}"=v2.29|Action=Allow|Active=TRUE|Dir=Out|Profile=Domain|Profile=Private|Profile=Public|Name=Xbox Game Bar Plugin|Desc=Xbox Game Bar Plugin|LUOwn=S-1-5-21-364868280-2578744981-2741750218-1000|AppPkgId=S-1-15-2-1823635404-1364722122-2170562666-1762391777-2399050872-3465541734-3732476201|EmbedCtxt=Xbox Game Bar Plugin|Platform=2:6:2|Platform2=GTEQ| "TCP Query User{9CB910E0-ABE1-476B-8350-01935B40403E}C:\riot games\league of legends\game\league of legends.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\riot games\league of legends\game\league of legends.exe|Name=League of Legends (TM) Client|Desc=League of Legends (TM) Client|Defer=User| "UDP Query User{6FE25F05-E72A-4C9B-BC22-CFC50CD8D2D2}C:\riot games\league of legends\game\league of legends.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\riot games\league of legends\game\league of legends.exe|Name=League of Legends (TM) Client|Desc=League of Legends (TM) Client|Defer=User| "TCP Query User{5EE75C7F-EF88-47D5-BB65-DE65B539AA7C}C:\program files (x86)\diablo iii\x64\diablo iii64.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\program files (x86)\diablo iii\x64\diablo iii64.exe|Name=Diablo III Retail|Desc=Diablo III Retail|Defer=User| "UDP Query User{0A5BB9CB-C29C-47AC-9E42-43F2536AF50B}C:\program files (x86)\diablo iii\x64\diablo iii64.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\program files (x86)\diablo iii\x64\diablo iii64.exe|Name=Diablo III Retail|Desc=Diablo III Retail|Defer=User| "TCP Query User{5843D818-5276-48C3-BAEE-33825BE7E422}C:\program files\logitech gaming software\lcore.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\program files\logitech gaming software\lcore.exe|Name=Logitech Gaming Framework|Desc=Logitech Gaming Framework|Defer=User| "UDP Query User{65675E03-7E8D-4C19-BD7D-4F3F60190322}C:\program files\logitech gaming software\lcore.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\program files\logitech gaming software\lcore.exe|Name=Logitech Gaming Framework|Desc=Logitech Gaming Framework|Defer=User| "{0B5392A4-4002-413C-B278-B0654FC89136}"=v2.29|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=5353|App=C:\Program Files (x86)\Opera\63.0.3368.94\opera.exe|Name=Opera Internet Browser (mDNS-In)|Desc=Inbound rule to allow mDNS traffic.|EmbedCtxt=Opera Internet Browser| "{98BB2BE1-3070-4AC6-9D41-3626D241D42A}"=v2.29|Action=Allow|Active=TRUE|Dir=In|Protocol=17|LPort=5353|App=C:\Program Files (x86)\Google\Chrome\Application\chrome.exe|Name=Google Chrome (mDNS-In)|Desc=Règle de trafic entrant pour Google Chrome autorisant le trafic mDNS|EmbedCtxt=Google Chrome| "TCP Query User{2D53C8DD-2C7D-4416-8514-B7E273B3DF07}C:\users\timothée\appdata\roaming\utorrent\utorrent.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\users\timothée\appdata\roaming\utorrent\utorrent.exe|Name=utorrent.exe|Desc=utorrent.exe|Edge=TRUE|Defer=App| "UDP Query User{3948EF4C-A8F8-497E-AEAB-CE0FE829FB45}C:\users\timothée\appdata\roaming\utorrent\utorrent.exe"=v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\users\timothée\appdata\roaming\utorrent\utorrent.exe|Name=utorrent.exe|Desc=utorrent.exe|Edge=TRUE|Defer=App| [HKLM\SYSTEM\CurrentControlSet\Services\sharedaccess\Parameters\FirewallPolicy\standardprofile\authorizedapplications\list] "C:\Program Files (x86)\Orbitdownloader\orbitnet.exe"=C:\Program Files (x86)\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit ---------- | Control\Class [HKLM\SYSTEM\CurrentControlSet\Control\Class\{05f5cfe2-4733-4950-a6bb-07aad01a3a84}] : (XboxComposite) [] -> @dc1-controller.inf,%ClassName%;Xbox Peripherals [HKLM\SYSTEM\CurrentControlSet\Control\Class\{1264760F-A5C8-4BFE-B314-D56A7B44A362}] : (DXGKrnl) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{13e42dfa-85d9-424d-8646-28a70f864f9c}] : (RemotePosDevice) [] -> @remoteposdrv.inf,%ClassName%;POS Remote Device [HKLM\SYSTEM\CurrentControlSet\Control\Class\{14b62f50-3f15-11dd-ae16-0800200c9a66}] : (DigitalMediaDevices) [] -> @digitalmediadevice.inf,%ClassName%;Digital Media Devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{1ed2bbf9-11f0-4084-b21f-ad83a8e6dcdc}] : (PrintQueue) [] -> @printqueue.inf,%ClassName%;Print queues [HKLM\SYSTEM\CurrentControlSet\Control\Class\{25dbce51-6c8f-4a72-8a6d-b54c2b4fc835}] : (WCEUSBS) [] -> @%SystemRoot%\System32\SysClass.Dll,-3026 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{268c95a1-edfe-11d3-95c3-0010dc4050a5}] : (SecurityAccelerator) [] -> @c_sslaccel.inf,%ClassName%;Security accelerators [HKLM\SYSTEM\CurrentControlSet\Control\Class\{281922b1-a910-451e-adb1-0b5567f1edb1}] : (BTDFU) [] -> @oem131.inf,%BTWClassName%;Bluetooth Devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{2a9fe532-0cdc-44f9-9827-76192f2ca2fb}] : (HidMsr) [] -> @c_magneticstripereader.inf,%ClassName%;POS HID Magnetic Stripe Reader [HKLM\SYSTEM\CurrentControlSet\Control\Class\{2db15374-706e-4131-a0c7-d7c78eb0289a}] : (SystemRecovery) [] -> @c_fssystemrecovery.inf,%ClassDesc%;FS System recovery filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{3163C566-D381-4467-87BC-A65A18D5B648}] : (fvevol) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{3163C566-D381-4467-87BC-A65A18D5B649}] : (fvevol) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{36fc9e60-c465-11cf-8056-444553540000}] : (USB) [] -> @%SystemRoot%\System32\SysClass.Dll,-3025 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{3e3f0674-c83c-4558-bb26-9820e1eba5c5}] : (ContentScreener) [] -> @c_fscontentscreener.inf,%ClassDesc%;FS Content screener filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{3f966bd9-fa04-4ec5-991c-d326973b5128}] : (AndroidUsbDeviceClass) [] -> @oem80.inf,%ClassName%;SAMSUNG Android Phone [HKLM\SYSTEM\CurrentControlSet\Control\Class\{43675d81-502a-4a82-9f84-b75f418c5dea}] : (Media Center Extender) [] -> @c_mcx.inf,%ClassDesc%;Media Center Extenders [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4658ee7e-f050-11d1-b6bd-00c04fa372a7}] : (PnpPrinters) [] -> @%SystemRoot%\system32\ntprint.dll,-1300 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{473a6b1d-3407-400e-b91a-f991c5a39dc3}] : (Bluetooth) [] -> @oem66.inf,%ClassName%;Bluetooth Radios [HKLM\SYSTEM\CurrentControlSet\Control\Class\{48721b56-6795-11d2-b1a8-0080c72e74a2}] : (Dot4) [] -> @%SystemRoot%\system32\sysclass.dll,-3023 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{48d3ebc4-4cf8-48ff-b869-9c68ad42eb9f}] : (Replication) [] -> @c_fsreplication.inf,%ClassDesc%;FS Replication filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{49ce6ac8-6f86-11d2-b1e5-0080c72e74a2}] : (Dot4Print) [] -> @%SystemRoot%\system32\sysclass.dll,-3024 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e965-e325-11ce-bfc1-08002be10318}] : (CDROM) [] -> @%SystemRoot%\System32\StorProp.dll,-17001 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e966-e325-11ce-bfc1-08002be10318}] : (Computer) [] -> @%SystemRoot%\System32\SysClass.dll,-3000 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e967-e325-11ce-bfc1-08002be10318}] : (DiskDrive) [] -> @c_diskdrive.inf,%ClassDesc%;Disk drives [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e968-e325-11ce-bfc1-08002be10318}] : (Display) [] -> @c_display.inf,%ClassDesc%;Display adapters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e969-e325-11ce-bfc1-08002be10318}] : (FDC) [] -> @%SystemRoot%\System32\SysClass.Dll,-3013 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96a-e325-11ce-bfc1-08002be10318}] : (HDC) [] -> @%SystemRoot%\System32\SysClass.Dll,-3001 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96b-e325-11ce-bfc1-08002be10318}] : (Keyboard) [] -> @%SystemRoot%\System32\SysClass.Dll,-3002 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96c-e325-11ce-bfc1-08002be10318}] : (MEDIA) [] -> @%SystemRoot%\System32\mmci.dll,-3000 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96d-e325-11ce-bfc1-08002be10318}] : (Modem) [] -> @%SystemRoot%\System32\mdminst.dll,-14100 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96e-e325-11ce-bfc1-08002be10318}] : (Monitor) [] -> @c_monitor.inf,%ClassDesc%;Monitors [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e96f-e325-11ce-bfc1-08002be10318}] : (Mouse) [] -> @%SystemRoot%\System32\SysClass.Dll,-3004 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e970-e325-11ce-bfc1-08002be10318}] : (MTD) [] -> @%SystemRoot%\System32\SysClass.Dll,-3021 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e971-e325-11ce-bfc1-08002be10318}] : (MultiFunction) [] -> @%SystemRoot%\System32\SysClass.Dll,-3014 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e972-e325-11ce-bfc1-08002be10318}] : (Net) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1502 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e973-e325-11ce-bfc1-08002be10318}] : (NetClient) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1504 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e974-e325-11ce-bfc1-08002be10318}] : (NetService) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1505 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e975-e325-11ce-bfc1-08002be10318}] : (NetTrans) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1503 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e977-e325-11ce-bfc1-08002be10318}] : (PCMCIA) [] -> @%SystemRoot%\System32\SysClass.Dll,-3010 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e978-e325-11ce-bfc1-08002be10318}] : (Ports) [] -> @%SystemRoot%\System32\msports.dll,-10000 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e979-e325-11ce-bfc1-08002be10318}] : (Printer) [] -> @%SystemRoot%\system32\ntprint.dll,-1004 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e97b-e325-11ce-bfc1-08002be10318}] : (SCSIAdapter) [] -> @%SystemRoot%\System32\SysClass.Dll,-3005 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e97d-e325-11ce-bfc1-08002be10318}] : (System) [] -> @%SystemRoot%\System32\SysClass.Dll,-3008 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e97e-e325-11ce-bfc1-08002be10318}] : (Unknown) [] -> @%SystemRoot%\System32\SysClass.Dll,-3009 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4d36e980-e325-11ce-bfc1-08002be10318}] : (FloppyDisk) [] -> @%SystemRoot%\System32\SysClass.Dll,-3015 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{4fc9541c-0fe6-4480-a4f6-9495a0d17cd2}] : (HidLineDisplay) [] -> @c_linedisplay.inf,%ClassName%;POS Line Display [HKLM\SYSTEM\CurrentControlSet\Control\Class\{50127dc3-0f36-415e-a6cc-4cb3be910b65}] : (Processor) [] -> @c_processor.inf,%ClassDesc%;Processors [HKLM\SYSTEM\CurrentControlSet\Control\Class\{50906cb8-ba12-11d1-bf5d-0000f805f530}] : (MultiPortSerial) [] -> @%SystemRoot%\system32\sysclass.dll,-3022 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5099944a-f6b9-4057-a056-8c550228544c}] : (Memory) [] -> @%SystemRoot%\System32\SysClass.Dll,-3018 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{50dd5230-ba8a-11d1-bf5d-0000f805f530}] : (SmartCardReader) [] -> @%SystemRoot%\System32\StorProp.dll,-17002 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5175d334-c371-4806-b3ba-71fd53c9258d}] : (Sensor) [] -> @%SystemRoot%\system32\SensorsCpl.dll,-10000 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{533c5b84-ec70-11d2-9505-00c04f79deaf}] : (VolumeSnapshot) [] -> @%SystemRoot%\System32\SysClass.Dll,-3011 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53487c23-680f-4585-acc3-1f10d6777e82}] : (SmrDisk) [] -> @c_smrdisk.inf,%ClassDesc%;Shingled magnetic recording disks [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53966cb1-4d46-4166-bf23-c522403cd495}] : (ScmDisk) [] -> @c_scmdisk.inf,%ClassDesc%;Persistent memory disks [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53b3cf03-8f5a-4788-91b6-d19ed9fcccbf}] : (SmrVolume) [] -> @c_smrvolume.inf,%ClassDesc%;Shingled magnetic recording volumes [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53ccb149-e543-4c84-b6e0-bce4f6b7e806}] : (ScmVolume) [] -> @c_scmvolume.inf,%ClassDesc%;Storage Class Memory volumes [HKLM\SYSTEM\CurrentControlSet\Control\Class\{53d29ef7-377c-4d14-864b-eb3a85769359}] : (Biometric) [] -> @%SystemRoot%\System32\SysClass.DLL,-3028 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5630831c-06c9-4856-b327-f5d32586e060}] : (Proximity) [] -> @c_proximity.inf,%ClassDesc%;Proximity devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5989fce8-9cd0-467d-8a6a-5419e31529d4}] : (AudioProcessingObject) [] -> @c_apo.inf,%ClassDesc%;Audio Processing Objects (APOs) [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5aea001d-9372-4ed7-97f3-b79bf15a53c5}] : (OposLegacyDevice) [] -> @oposdrv.inf,%ClassName%;OPOS Legacy Device [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5c4c3332-344d-483c-8739-259e934c9cc8}] : (SoftwareComponent) [] -> @c_swcomponent.inf,%ClassDesc%;Software components [HKLM\SYSTEM\CurrentControlSet\Control\Class\{5d1b9aaa-01e2-46af-849f-272b3f324c46}] : (FSFilterSystem) [] -> @c_fssystem.inf,%ClassDesc%;FS System filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{62f9c741-b25a-46ce-b54c-9bccce08b6f2}] : (SoftwareDevice) [] -> @c_swdevice.inf,%ClassDesc%;Software devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{645ad99b-1344-4316-837a-08a3e73db222}] : (PerceptionSimulation) [] -> @PerceptionSimulationSixDof.inf,%ClassName%;Perception Simulation Controllers [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6a0a8e78-bba6-4fc4-a709-1e33cd09d67e}] : (PhysicalQuotaManagement) [] -> @c_fsphysicalquotamgmt.inf,%ClassDesc%;FS Physical quota management filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6bdd1fc1-810f-11d0-bec7-08002be2092f}] : (1394) [] -> @%SystemRoot%\System32\SysClass.Dll,-3016 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6bdd1fc5-810f-11d0-bec7-08002be2092f}] : (Infrared) [] -> @%SystemRoot%\System32\NetCfgx.dll,-1501 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6bdd1fc6-810f-11d0-bec7-08002be2092f}] : (Image) [] -> @%SystemRoot%\system32\sti_ci.dll,-52 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6d807884-7d21-11cf-801c-08002be10318}] : (TapeDrive) [] -> @%SystemRoot%\System32\SysClass.Dll,-3006 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{6FAE73B7-B735-4B50-A0DA-0DC2484B1F1A}] : (BasicDisplay) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{71a27cdd-812a-11d0-bec7-08002be2092f}] : (Volume) [] -> @c_volume.inf,%ClassDesc%;Storage volumes [HKLM\SYSTEM\CurrentControlSet\Control\Class\{71aa14f8-6fad-4622-ad77-92bb9d7e6947}] : (ContinuousBackup) [] -> @c_fscontinuousbackup.inf,%ClassDesc%;FS Continuous backup filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{72631e54-78a4-11d0-bcf7-00aa00b7b32a}] : (Battery) [] -> @%SystemRoot%\system32\powrprof.dll,-611 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{745a17a0-74d3-11d0-b6fe-00a0c90f57da}] : (HIDClass) [] -> @%SystemRoot%\System32\hid.dll,-101 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{772e18f2-8925-4229-a5ac-6453cb482fda}] : (HidCashDrawer) [] -> @c_cashdrawer.inf,%ClassName%;POS Cash Drawer [HKLM\SYSTEM\CurrentControlSet\Control\Class\{781EF630-72B2-11D2-B852-00C04FAD5101}] : (vjoy) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{7ebefbc0-3200-11d2-b4c2-00a0c9697d07}] : (61883) [] -> @%SystemRoot%\System32\SysClass.Dll,-3019 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{81C87465-DE07-4EFC-9D93-61E891D52FD2}] : (RdpVideoMiniport) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{8503c911-a6c7-4919-8f79-5028f5866b0c}] : (QuotaManagement) [] -> @c_fsquotamgmt.inf,%ClassDesc%;FS Quota management filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{87ef9ad1-8f70-49ee-b215-ab1fcadcbe3c}] : (NetDriver) [] -> @c_netdriver.inf,%ClassDesc%;Universal Network Drivers [HKLM\SYSTEM\CurrentControlSet\Control\Class\{88a1c342-4539-11d3-b88d-00c04fad5171}] : (TS_Generic) [] -> @ts_generic.inf,%TSClassName%;Generic Remote Desktop devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{88bae032-5a81-49f0-bc3d-a4ff138216d6}] : (USBDevice) [] -> @%SystemRoot%\System32\SysClass.Dll,-3029 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{89786ff1-9c12-402f-9c9e-17753c7f4375}] : (CopyProtection) [] -> @c_fscopyprotection.inf,%ClassDesc%;FS Copy protection filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{8ecc055d-047f-11d1-a537-0000f8753ed1}] : (LegacyDriver) [] -> @%SystemRoot%\System32\SysClass.Dll,-3003 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{990a2bd7-e738-46c7-b26f-1cf8fb9f1391}] : (SmartCard) [] -> @%SystemRoot%\System32\SysClass.DLL,-3031 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{9da2b80f-f89f-4a49-a5c2-511b085b9e8a}] : (EhStorSilo) [] -> @rawsilo.inf,%ClassName%;IEEE 1667 silo and control devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{a0a588a4-c46f-4b37-b7ea-c82fe89870c6}] : (SDHost) [] -> @%SystemRoot%\System32\SysClass.Dll,-3012 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{a0a701c0-a511-42ff-aa6c-06dc0395576f}] : (Encryption) [] -> @c_fsencryption.inf,%ClassDesc%;FS Encryption filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{A3E32DBA-BA89-4F17-8386-2D0127FBD4CC}] : (rdpbus) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{A8BA2D1F-894F-464A-B0CE-7A0C8FD65DF1}] : (ViGEmBus) [] -> [HKLM\SYSTEM\CurrentControlSet\Control\Class\{b1d1a169-c54f-4379-81db-bee7d88d7454}] : (AntiVirus) [] -> @c_fsantivirus.inf,%ClassDesc%;FS Anti-virus filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{b2728d24-ac56-42db-9e02-8edaf5db652f}] : (RDCamera) [] -> @rdcameradriver.inf,%ClassName%;Remote Desktop Camera devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{b86dff51-a31e-4bac-b3cf-e8cfe75c9fc2}] : (ActivityMonitor) [] -> @c_fsactivitymonitor.inf,%ClassDesc%;FS Activity monitor filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{b91b7968-6435-4966-8928-79bf082e3e30}] : (Logitech LCDs) [] -> @oem120.inf,%LGLCD%;Logitech LCDs [HKLM\SYSTEM\CurrentControlSet\Control\Class\{bbbe8734-08fa-4966-b6a6-4e5ad010cdd7}] : (USBFunctionController) [] -> @%SystemRoot%\System32\SysClass.Dll,-3030 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c06ff265-ae09-48f0-812c-16753d7cba83}] : (AVC) [] -> @%SystemRoot%\System32\SysClass.Dll,-3027 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c166523c-fe0c-4a94-a586-f1a80cfbbf3e}] : (AudioEndpoint) [] -> @audioendpoint.inf,%ClassName%;Audio inputs and outputs [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c243ffbd-3afc-45e9-b3d3-2ba18bc7ebc5}] : (BarcodeScanner) [] -> @c_barcodescanner.inf,%ClassName%;POS Barcode Scanner [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c30ecea0-11ef-4ef9-b02e-6af81e6e65c0}] : (WSDPrintDevice) [] -> @wsdprint.inf,%ClassName%;WSD Print Provider [HKLM\SYSTEM\CurrentControlSet\Control\Class\{c7bc9b22-21f0-4f0d-9bb6-66c229b8cd33}] : (POSPrinter) [] -> @c_receiptprinter.inf,%ClassName%;POS Receipt Printer [HKLM\SYSTEM\CurrentControlSet\Control\Class\{ca3e7ab9-b4c3-4ae6-8251-579ef933890f}] : (Camera) [] -> @c_camera.inf,%ClassDesc%;Cameras [HKLM\SYSTEM\CurrentControlSet\Control\Class\{cdcf0939-b75b-4630-bf76-80f7ba655884}] : (CFSMetadataServer) [] -> @c_fscfsmetadataserver.inf,%ClassDesc%;FS CFS metadata server filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{ce5939ae-ebde-11d0-b181-0000f8753ec4}] : (MediumChanger) [] -> @%SystemRoot%\System32\StorProp.dll,-17003 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d02bc3da-0c8e-4945-9bd5-f1883c226c8c}] : (SecurityEnhancer) [] -> @c_fssecurityenhancer.inf,%ClassDesc%;FS Security enhancer filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d41dd63a-1395-4419-ae14-a534f5f2ad29}] : (DriverInterface) [] -> DriverInterface [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d421b08e-6d16-41ca-9c4d-9147e5ac98e0}] : (Miracast) [] -> @miradisp.inf,%ClassName%;Miracast display devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d48179be-ec20-11d1-b6b8-00c04fa372a7}] : (SBP2) [] -> @%SystemRoot%\System32\SysClass.Dll,-3017 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d546500a-2aeb-45f6-9482-f4b1799c3177}] : (HSM) [] -> @c_fshsm.inf,%ClassDesc%;FS HSM filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d612553d-06b1-49ca-8938-e39ef80eb16f}] : (Holographic) [] -> @c_holographic.inf,%ClassName%;Mixed Reality devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d61ca365-5af4-4486-998b-9db4734c6ca3}] : (XnaComposite) [] -> @xusb22.inf,%XUSB22.ClassName%;Xbox 360 Peripherals [HKLM\SYSTEM\CurrentControlSet\Control\Class\{d94ee5d8-d189-4994-83d2-f68d7d41b0e6}] : (SecurityDevices) [] -> @%SystemRoot%\System32\SysClass.Dll,-3020 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{db4f6ddd-9c0e-45e4-9597-78dbbad0f412}] : (SmartCardFilter) [] -> @%SystemRoot%\System32\SysClass.DLL,-3032 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e0cbf06c-cd8b-4647-bb8a-263b43f0f974}] : (Bluetooth) [] -> @%SystemRoot%\system32\bthci.dll,-4001 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e24e7a3c-87cd-4ac9-b426-eec8521b7710}] : (LGWinUSB) [] -> @oem40.inf,%DEVICEMANAGERCATEGORY%;Logitech USB Gaming Devices [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e2f84ce7-8efa-411c-aa69-97454ca4cb57}] : (Extension) [] -> @c_extension.inf,%ClassDesc%;Extensions [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e55fa6f9-128c-4d04-abab-630c74b1453a}] : (Infrastructure) [] -> @c_fsinfrastructure.inf,%ClassDesc%;FS Infrastructure filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{e6f1aa1c-7f3b-4473-b2e8-c97d8ac71d53}] : (UCM) [] -> @c_ucm.inf,%ClassDesc%;USB Connector Managers [HKLM\SYSTEM\CurrentControlSet\Control\Class\{eec5ad98-8080-425f-922a-dabf3de3f69a}] : (WPD) [] -> @%SystemRoot%\System32\wpd_ci.dll,-101 [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f2e7dd72-6468-4e36-b6f1-6488f42c1b52}] : (Firmware) [] -> @c_firmware.inf,%ClassDesc%;Firmware [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f3586baf-b5aa-49b5-8d6c-0569284c639f}] : (Compression) [] -> @c_fscompression.inf,%ClassDesc%;FS Compression filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f72fe0d4-cbcb-407d-8814-9ed673d0dd6b}] : (USB) [] -> @oem113.inf,%ClassName%;ADB Interface [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f75a86c0-10d8-4c3a-b233-ed60e4cdfaac}] : (Virtualization) [] -> @c_fsvirtualization.inf,%ClassDesc%;FS Virtualization filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{f8ecafa6-66d1-41a5-899b-66585d7216b7}] : (OpenFileBackup) [] -> @c_fsopenfilebackup.inf,%ClassDesc%;FS Open file backup filters [HKLM\SYSTEM\CurrentControlSet\Control\Class\{fe8f1572-c67a-48c0-bbac-0b5c6d66cafb}] : (Undelete) [] -> @c_fsundelete.inf,%ClassDesc%;FS Undelete filters [HKLM\SYSTEM\CurrentControlSet\Control\Els\Services\{2D64B439-6CAF-4f6b-B688-E5D0F4FAA7D7}] : (Script Detection) [@elscore.dll,-2] -> ElsLad.dll (Copyright (c) Microsoft Corporation.) [HKLM\SYSTEM\CurrentControlSet\Control\Els\Services\{A22D52C1-DBFD-40cb-AE78-E3BA9EE1D88F}] : (Transliteration) [@elscore.dll,-5] -> elstrans.dll (Copyright (c) Microsoft Corporation.) [HKLM\SYSTEM\CurrentControlSet\Control\Els\Services\{CF7E00B1-909B-4d95-A8F4-611F7C377702}] : (Language Detection) [@elscore.dll,-1] -> ElsLad.dll (Copyright (c) Microsoft Corporation.) ---------- | Loaded modules (whitelist) [23/04/2007 14:15:48] - (6.0.6000.16386) - (Windows (R) Codename Longhorn DDK provider - Realtek Utility I/O Driver) - C:\WINDOWS\system32\DRIVERS\rtlprot.sys [25/10/2018 23:51:31] - (5.1.14.12924) - (BigNox Corporation - VirtualBox Support Driver) - C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [07/08/2017 15:43:55] - (5.1.26.17224) - (Oracle Corporation - VirtualBox USB Monitor Driver) - C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys [07/08/2017 15:43:54] - (5.1.26.17224) - (Oracle Corporation - VirtualBox Support Driver) - C:\WINDOWS\system32\DRIVERS\VBoxDrv.sys [20/08/2016 12:49:36] - (6.9.0.0) - (Power Software Ltd - PowerISO Virtual Drive) - C:\WINDOWS\System32\Drivers\SCDEmu.SYS [21/12/2014 00:31:04] - (6.1.1.3) - (Elaborate Bytes AG - ElbyCD Windows x64 I/O driver) - C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [30/05/2017 21:28:16] - (1.0.0.103) - (Scarlet.Crush Productions - Scp Virtual Bus Driver) - C:\WINDOWS\System32\drivers\ScpVBus.sys [14/06/2015 15:37:44] - (5.24.0.0) - (Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver) - C:\WINDOWS\System32\drivers\dtlitescsibus.sys [03/05/2014 18:53:40] - (5.4.7.1) - (Elaborate Bytes AG - Virtual CloneDrive storage miniport) - C:\WINDOWS\System32\drivers\VClone.sys [02/09/2014 19:01:16] - (6.1.7600.16385) - (Windows (R) Win 7 DDK provider - VB Virtual Audio Device) - C:\WINDOWS\system32\DRIVERS\vbaudio_cable64_win7.sys [06/10/2017 12:54:42] - (6.10.0.8) - (Creative Technology Ltd. - Creative Audio Driver) - C:\WINDOWS\system32\drivers\MBfilt64.sys [13/08/2015 17:36:50] - (1.0.38.0) - (Razer Inc - Razer RzEndPt) - C:\WINDOWS\System32\drivers\rzp1endpt.sys [13/08/2015 17:36:50] - (1.0.38.0) - (Razer Inc - Razer Rzudd Engine) - C:\WINDOWS\System32\drivers\rzudd.sys [13/08/2015 17:36:50] - (1.0.38.0) - (Razer Inc - Razer Mouse Device) - C:\WINDOWS\System32\drivers\rzvmouse.sys [06/05/2018 14:40:55] - (1.0.2.8005) - (Razer, Inc. - Razer Overlay Support) - C:\WINDOWS\system32\drivers\rzpmgrk.sys [22/10/2014 09:49:55] - (1.0.0.0) - (MSI - NTIOLib) - C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys ---------- | Services | 0 : Starting up | 1 : System | 2 : Automatic | 3 : Manual | 4 : Disabled | R : Running service | S : Stopped service S0 - [Kernel Driver] - 3ware () -> System32\drivers\3ware.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - ACPI (@acpi.inf,%ACPI.SvcDesc%;Microsoft ACPI Driver) -> System32\drivers\ACPI.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - acpiex (Microsoft ACPIEx Driver) -> System32\Drivers\acpiex.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - ADP80XX () -> System32\drivers\ADP80XX.SYS - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - amdkmafd (@oem99.inf,%AMDKMAFD_svcdesc%;AMD Audio Bus Lower Filter) -> System32\drivers\amdkmafd.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - amdkmpfd (@oem130.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter) -> System32\drivers\amdkmpfd.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - amdsata () -> System32\drivers\amdsata.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - amdsbs () -> System32\drivers\amdsbs.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - amdxata () -> System32\drivers\amdxata.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - arcsas (@arcsas.inf,%arcsas_ServiceName%;Adaptec SAS/SATA-II RAID Storport's Miniport Driver) -> System32\drivers\arcsas.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - atapi (@mshdc.inf,%idechannel.DeviceDesc%;IDE Channel) -> System32\drivers\atapi.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - b06bdrv (@netbvbda.inf,%vbd_srv_desc%;QLogic Network Adapter VBD) -> System32\drivers\bxvbda.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - bttflt (@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter) -> System32\drivers\bttflt.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - cht4iscsi () -> System32\drivers\cht4sx64.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - CLFS (@%SystemRoot%\system32\drivers\clfs.sys,-100) -> System32\drivers\CLFS.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - CNG () -> System32\Drivers\cng.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - Disk (@disk.inf,%disk_ServiceDesc%;Disk Driver) -> System32\drivers\disk.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - ebdrv (@netevbda.inf,%vbd_srv_desc%;QLogic 10 Gigabit Ethernet Adapter VBD) -> System32\drivers\evbda.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - EhStorClass (@%SystemRoot%\system32\drivers\EhStorClass.sys,-100) -> System32\drivers\EhStorClass.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - EhStorTcgDrv (@ehstortcgdrv.inf,%EhStorTcgDrv.Desc%;Microsoft driver for storage devices supporting IEEE 1667 and TCG protocols) -> System32\drivers\EhStorTcgDrv.sys - AcceptPause: False - AcceptStop: False R0 - [File System Driver] - FileInfo (@%SystemRoot%\system32\drivers\fileinfo.sys,-100) -> System32\drivers\fileinfo.sys - AcceptPause: False - AcceptStop: True R0 - [File System Driver] - FltMgr (@%SystemRoot%\system32\drivers\fltmgr.sys,-10001) -> system32\drivers\fltmgr.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - fvevol (@%SystemRoot%\system32\drivers\fvevol.sys,-100) -> System32\DRIVERS\fvevol.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - HpSAMD () -> System32\drivers\HpSAMD.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - hwpolicy (@%systemroot%\system32\drivers\hwpolicy.sys,-101) -> System32\drivers\hwpolicy.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - iaStorA () -> System32\drivers\iaStorA.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - iaStorAVC (@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller) -> System32\drivers\iaStorAVC.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - iaStorV (@iastorv.inf,%*PNP0600.DeviceDesc%;Intel RAID Controller Windows 7) -> System32\drivers\iaStorV.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - intelide () -> System32\drivers\intelide.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - intelpep (@intelpep.inf,%INTELPEP.SVCDESC%;Intel(R) Power Engine Plug-in Driver) -> System32\drivers\intelpep.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - iorate (@%SystemRoot%\system32\drivers\iorate.sys,-101) -> system32\drivers\iorate.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - isapnp () -> System32\drivers\isapnp.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - ItSas35i () -> System32\drivers\ItSas35i.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - KSecDD () -> System32\Drivers\ksecdd.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - KSecPkg () -> System32\Drivers\ksecpkg.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - LSI_SAS () -> System32\drivers\lsi_sas.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - LSI_SAS2i () -> System32\drivers\lsi_sas2i.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - LSI_SAS3i () -> System32\drivers\lsi_sas3i.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - LSI_SSS () -> System32\drivers\lsi_sss.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - megasas () -> System32\drivers\megasas.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - megasas2i () -> System32\drivers\MegaSas2i.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - megasas35i () -> System32\drivers\megasas35i.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - megasr () -> System32\drivers\megasr.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - mountmgr (@%SystemRoot%\system32\drivers\mountmgr.sys,-100) -> System32\drivers\mountmgr.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - msisadrv () -> System32\drivers\msisadrv.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - MsSecFlt (@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001) -> system32\drivers\mssecflt.sys - AcceptPause: False - AcceptStop: True R0 - [File System Driver] - Mup (@%systemroot%\system32\drivers\mup.sys,-101) -> System32\Drivers\mup.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - mvumis () -> System32\drivers\mvumis.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - NDIS (@%SystemRoot%\system32\drivers\ndis.sys,-200) -> system32\drivers\ndis.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - nvraid () -> System32\drivers\nvraid.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - nvstor () -> System32\drivers\nvstor.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - partmgr (@%SystemRoot%\system32\drivers\partmgr.sys,-100) -> System32\drivers\partmgr.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - pci (@pci.inf,%pci_svcdesc%;Pilote de bus PCI) -> System32\drivers\pci.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - pciide () -> System32\drivers\pciide.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - pcmcia () -> System32\drivers\pcmcia.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - pcw (Performance Counters for Windows Driver) -> System32\drivers\pcw.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - pdc (@%SystemRoot%\system32\drivers\pdc.sys,-100) -> system32\drivers\pdc.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - percsas2i () -> System32\drivers\percsas2i.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - percsas3i () -> System32\drivers\percsas3i.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - Ramdisk (Windows RAM Disk Driver) -> system32\DRIVERS\ramdisk.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - rdyboost (ReadyBoost) -> System32\drivers\rdyboost.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - sbp2port (@sbp2.inf,%sbp2_ServiceDesc%;SBP-2 Transport/Protocol Bus Driver) -> System32\drivers\sbp2port.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - scmbus (@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver) -> System32\drivers\scmbus.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - SgrmAgent (@%SystemRoot%\System32\Drivers\SgrmAgent.sys,-1001) -> system32\drivers\SgrmAgent.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - SiSRaid2 () -> System32\drivers\SiSRaid2.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - SiSRaid4 () -> System32\drivers\sisraid4.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - SmartSAMD () -> System32\drivers\SmartSAMD.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - spaceport (@spaceport.inf,%Spaceport_ServiceDesc%;Storage Spaces Driver) -> System32\drivers\spaceport.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - stexstor () -> System32\drivers\stexstor.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - storahci (@mshdc.inf,%storahci_ServiceDescription%;Microsoft Standard SATA AHCI Driver) -> System32\drivers\storahci.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - storflt (@wstorflt.inf,%service_desc%;Microsoft Hyper-V Storage Accelerator) -> System32\drivers\vmstorfl.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - stornvme (@stornvme.inf,%StorNVMe_ServiceDesc%;Microsoft Standard NVM Express Driver) -> System32\drivers\stornvme.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - storufs (@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver) -> System32\drivers\storufs.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - storvsc () -> System32\drivers\storvsc.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - Tcpip (@%SystemRoot%\system32\drivers\tcpip.sys,-10001) -> System32\drivers\tcpip.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - vdrvroot (@vdrvroot.inf,%vdrvroot_svcdesc%;Microsoft Virtual Drive Enumerator) -> System32\drivers\vdrvroot.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - vmbus (@wvmbus.inf,%vmbus.SVCDESC%;Virtual Machine Bus) -> System32\drivers\vmbus.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - volmgr (@volmgr.inf,%volmgr_svcdesc%;Volume Manager Driver) -> System32\drivers\volmgr.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - volmgrx (@%SystemRoot%\system32\drivers\volmgrx.sys,-100) -> System32\drivers\volmgrx.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - volsnap (@%SystemRoot%\system32\drivers\volsnap.sys,-100) -> System32\drivers\volsnap.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - volume (@volume.inf,%VolumeServiceDesc%;Volume driver) -> System32\drivers\volume.sys - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - vsmraid () -> System32\drivers\vsmraid.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - VSTXRAID (@vstxraid.inf,%Driver.DeviceDesc%;VIA StorX Storage RAID Controller Windows Driver) -> System32\drivers\vstxraid.sys - AcceptPause: False - AcceptStop: False S0 - [Kernel Driver] - WdBoot (@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-390) -> system32\drivers\wd\WdBoot.sys - AcceptPause: False - AcceptStop: False R0 - [Kernel Driver] - Wdf01000 (@%SystemRoot%\system32\drivers\Wdf01000.sys,-1000) -> system32\drivers\Wdf01000.sys - AcceptPause: False - AcceptStop: True R0 - [File System Driver] - WdFilter (@%ProgramFiles%\Windows Defender\MpAsDesc.dll,-330) -> system32\drivers\wd\WdFilter.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - WFPLWFS (@%SystemRoot%\System32\drivers\wfplwfs.sys,-6000) -> System32\drivers\wfplwfs.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - WindowsTrustedRT (Windows Trusted Execution Environment Class Extension) -> system32\drivers\WindowsTrustedRT.sys - AcceptPause: False - AcceptStop: True R0 - [Kernel Driver] - WindowsTrustedRTProxy (@WindowsTrustedRTProxy.inf,%WindowsTrustedRTProxy.SVCDESC%;Microsoft Windows Trusted Runtime Secure Service) -> System32\drivers\WindowsTrustedRTProxy.sys - AcceptPause: False - AcceptStop: True R0 - [File System Driver] - Wof (Windows Overlay File System Filter Driver) -> (?) - AcceptPause: False - AcceptStop: True S0 - [Kernel Driver] - MbamElam (MbamElam) -> system32\DRIVERS\MbamElam.sys - AcceptPause: False - AcceptStop: False R1 - [Kernel Driver] - AFD (@%systemroot%\system32\drivers\afd.sys,-1000) -> \SystemRoot\system32\drivers\afd.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - afunix (afunix) -> \SystemRoot\system32\drivers\afunix.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - ahcache (@%systemroot%\system32\drivers\ahcache.sys,-102) -> system32\DRIVERS\ahcache.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - bam (@%SystemRoot%\system32\drivers\bam.sys,-100) -> system32\drivers\bam.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - BasicDisplay () -> \SystemRoot\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_5103ac179273be89\BasicDisplay.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - BasicRender () -> \SystemRoot\System32\DriverStore\FileRepository\basicrender.inf_amd64_0b8d03c3bc0e7fd9\BasicRender.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - Beep (Beep) -> (?) - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - cdrom (@cdrom.inf,%cdrom_ServiceDesc%;CD-ROM Driver) -> \SystemRoot\System32\drivers\cdrom.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - CSC (@%systemroot%\system32\cscsvc.dll,-202) -> system32\drivers\csc.sys - AcceptPause: False - AcceptStop: True S1 - [Kernel Driver] - dam (@%SystemRoot%\system32\drivers\dam.sys,-100) -> system32\drivers\dam.sys - AcceptPause: False - AcceptStop: False R1 - [File System Driver] - Dfsc (@%systemroot%\system32\wkssvc.dll,-1008) -> System32\Drivers\dfsc.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - DXGKrnl (LDDM Graphics Subsystem) -> \SystemRoot\System32\drivers\dxgkrnl.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - ElbyCDIO (ElbyCDIO Driver) -> System32\Drivers\ElbyCDIO.sys - AcceptPause: False - AcceptStop: True R1 - [File System Driver] - FileCrypt (@%systemroot%\system32\drivers\filecrypt.sys,-100) -> system32\drivers\filecrypt.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - GpuEnergyDrv (@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100) -> System32\drivers\gpuenergydrv.sys - AcceptPause: False - AcceptStop: True R1 - [File System Driver] - Msfs () -> (?) - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - mssmbios (@mssmbios.inf,%mssmbios_svcdesc%;Microsoft System Management BIOS Driver) -> \SystemRoot\System32\drivers\mssmbios.sys - AcceptPause: False - AcceptStop: True R1 - [File System Driver] - NetBIOS (@%windir%\system32\drivers\netbios.sys,-503) -> system32\drivers\netbios.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - NetBT (@%SystemRoot%\system32\drivers\netbt.sys,-2) -> System32\DRIVERS\netbt.sys - AcceptPause: False - AcceptStop: True R1 - [File System Driver] - Npfs () -> (?) - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - npsvctrig (@npsvctrig.inf,%NPSVCTRIG.SvcDisplayName%;Named pipe service trigger provider) -> \SystemRoot\System32\drivers\npsvctrig.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - nsiproxy (@%SystemRoot%\system32\drivers\nsiproxy.sys,-2) -> system32\drivers\nsiproxy.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - Null () -> (?) - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - Psched (@%windir%\System32\drivers\pacer.sys,-101) -> System32\drivers\pacer.sys - AcceptPause: False - AcceptStop: True R1 - [File System Driver] - rdbss (@%systemroot%\system32\wkssvc.dll,-1000) -> system32\DRIVERS\rdbss.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - RtlProt (@oem3.inf,%RTLPROT_Desc%;Realtke RtlProt WLAN Utility Protocol Driver) -> \SystemRoot\system32\DRIVERS\rtlprot.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - SCDEmu (SCDEmu) -> (?) - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - tdx (@%SystemRoot%\system32\tcpipcfg.dll,-50004) -> \SystemRoot\system32\DRIVERS\tdx.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - VBoxDrv (VirtualBox Service) -> \SystemRoot\system32\DRIVERS\VBoxDrv.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - VBoxUSBMon (VirtualBox USB Monitor Driver) -> \SystemRoot\system32\DRIVERS\VBoxUSBMon.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - vwififlt (@%SystemRoot%\System32\drivers\vwififlt.sys,-259) -> System32\drivers\vwififlt.sys - AcceptPause: False - AcceptStop: True R1 - [Kernel Driver] - YSDrv (VBox Support Driver) -> \??\C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys - AcceptPause: False - AcceptStop: True R2 - [File System Driver] - CldFlt (Windows Cloud Files Filter Driver) -> system32\drivers\cldflt.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - LGCoreTemp (Logitech CPU Core Tempurature) -> \??\C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - lltdio (@%SystemRoot%\system32\lltdres.dll,-6) -> system32\drivers\lltdio.sys - AcceptPause: False - AcceptStop: True R2 - [File System Driver] - luafv (@%systemroot%\system32\drivers\luafv.sys,-100) -> \SystemRoot\system32\drivers\luafv.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - MMCSS (@%systemroot%\system32\drivers\mmcss.sys,-100) -> \SystemRoot\system32\drivers\mmcss.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - MsLldp (@%SystemRoot%\system32\drivers\mslldp.sys,-200) -> system32\drivers\mslldp.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - Ndu (@%SystemRoot%\system32\drivers\Ndu.sys,-10001) -> system32\drivers\Ndu.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - PEAUTH (PEAUTH) -> system32\drivers\peauth.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - rspndr (@%SystemRoot%\system32\lltdres.dll,-5) -> system32\drivers\rspndr.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - rzpmgrk (rzpmgrk) -> \??\C:\WINDOWS\system32\drivers\rzpmgrk.sys - AcceptPause: False - AcceptStop: True R2 - [File System Driver] - storqosflt (@%SystemRoot%\System32\drivers\storqosflt.sys,-101) -> system32\drivers\storqosflt.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - tcpipreg (TCP/IP Registry Compatibility) -> System32\drivers\tcpipreg.sys - AcceptPause: False - AcceptStop: True R2 - [Kernel Driver] - wanarp (@%systemroot%\system32\mprmsg.dll,-32011) -> System32\DRIVERS\wanarp.sys - AcceptPause: False - AcceptStop: True R2 - [File System Driver] - wcifs (@%systemroot%\system32\drivers\wcifs.sys,-100) -> \SystemRoot\system32\drivers\wcifs.sys - AcceptPause: False - AcceptStop: True ---------- | System files (Microsoft|Avast|Atheros|Adaptec|Brother|Intel Files whitelisted) ---------- | Uninstall (Whitelist) [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\Klub-7] : (The Klub 17.-.Team WRK17) -> "C:\TheKlub17\Binaries\TK17_Uninstall.exe" [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\Midnight Racing] : (Midnight Racing.-.) -> "C:\Program Files (x86)\Midnight Racing\uninstall.exe" [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\The Beginner's Guide] : (The Beginner's Guide.-.Everything Unlimited) -> C:\Program Files (x86)\The Beginner's Guide\uninstall.exe [HKU\S-1-5-21-364868280-2578744981-2741750218-1000\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\UnityWebPlayer] : (Unity Web Player.-.Unity Technologies ApS) -> C:\Users\Timothée\AppData\Local\Unity\WebPlayer\Uninstall.exe /CurrentUser [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\91e3c17a-d790-5dd1-9237-0b5abf524a16] : (Aether 2.0.0-dev.7+1812270036.9c9cdfdf.-.Air Labs) -> "C:\Program Files\Aether\Uninstall Aether.exe" /allusers [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\AddressBook] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\Connection Manager] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\DirectDrawEx] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\DXM_Runtime] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\Fontcore] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\IE40] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\IE4Data] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\IE5BAKEX] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\IEData] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\jdownloader2] : (JDownloader 2.-.AppWork GmbH) -> "C:\Users\Timothée\AppData\Local\JDownloader v2.0\Uninstall JDownloader.exe" [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\MobileOptionPack] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\MPlayer2] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\SchedulingAgent] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\VB:VBCABLE {87459874-1236-4469}] : (VBCABLE, The Virtual Audio Cable.-.VB-Audio Software) -> C:\Program Files\VB\CABLE\VBCABLE_Setup_x64.exe [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\WIC] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{005A39B4-C104-C892-8E36-F00926DF37B2}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{00953243-411E-294C-6B7B-1BEDB868EA39}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{00FA63C2-474D-4DA4-666B-438520BBCCF9}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{013256F8-F40D-07D5-681C-6EA5BF5B7594}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{027C76C5-56C6-379A-6AE0-009495E47B7A}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{034D6517-D2BC-37BE-BE4E-72217A12A075}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{03E62AC2-0B16-0089-A3D6-518552A10DC8}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{04065C2C-B81C-252D-A74C-67671B15C2C7}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{0436110E-532F-E7CF-610D-4A78820B7DD8}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{04738FBA-7865-DD5A-A99A-2003532E4E5C}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{09EC8DA8-C87F-23D0-5B1E-254B10B760D5}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{0A330707-8720-CBD4-EE4C-DE4E2F1DC95C}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{0A37C9FF-C302-398E-52AF-D53336C81B5C}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{0BA5C068-FA0D-7C39-E185-1FE9AD8C9A98}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{0CEFD072-4694-36C9-333E-C77BFBDC9DAB}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{0D3E9E15-DE7A-300B-96F1-B4AF12B96488}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{0F558A7E-2818-91A2-CA9E-03A82033B593}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{0FFDC804-21EE-4283-ADBA-6A1958EB9525}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{11A88BD5-F059-4743-81D9-1432AC9C3D4E}] : (Oracle VM VirtualBox 5.1.26.-.Oracle Corporation) -> MsiExec.exe /I{11A88BD5-F059-4743-81D9-1432AC9C3D4E} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{12491C0B-119E-6E0C-444D-F664E3DB51BF}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{13632547-24A4-C5F4-9C83-C629C2E1E363}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{15A0F113-BF2C-4C12-8AA8-42AE0D9AE1C9}] : (EpsonNet Print.-.SEIKO EPSON Corporation) -> MsiExec.exe /X{15A0F113-BF2C-4C12-8AA8-42AE0D9AE1C9} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{168E9C24-F28F-D630-74BB-4F4D66CFC871}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{16FC5B97-5AC3-056E-1A1B-FF36B790575E}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{1739AB49-2038-78F5-1A87-BC7490CAC76A}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{17DEA095-8EE1-49A2-AC5A-9663DB098FA9}] : (CSR Harmony Wireless Software Stack.-.CSR Plc.) -> MsiExec.exe /X{17DEA095-8EE1-49A2-AC5A-9663DB098FA9} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{1AFE5198-B1F8-F438-4553-BE0CF99911A8}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{1C134C82-9A82-4416-B46E-AECF55E9FE41}] : (Intel(R) Management Engine Components.-.Intel Corporation) -> MsiExec.exe /I{1C134C82-9A82-4416-B46E-AECF55E9FE41} ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{1CBA90B5-58AB-4A4D-8153-CE3AC2FD129D}] : (AMD Settings - Branding.-.Advanced Micro Devices, Inc.) -> MsiExec.exe /I{1CBA90B5-58AB-4A4D-8153-CE3AC2FD129D} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{1D89886C-1BC7-978A-7790-BDF741552029}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{205AE40D-8AD7-4F29-A430-DD2168DA562D}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{223D250A-AABB-A9AA-7D07-7FA086D7BF62}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{22713997-1BCE-9C12-399C-7E8D0B6C772D}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{23170F69-40C1-2702-0922-000001000000}] : (7-Zip 9.22 (x64 edition).-.Igor Pavlov) -> MsiExec.exe /I{23170F69-40C1-2702-0922-000001000000} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{2417C3A7-2247-7C44-F3BE-BD4782A66953}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{2464B26D-1665-8DA4-190D-7C474AE7586B}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{24E392FA-47F1-5B50-8CA2-A994F2A2F103}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{25DEBD2B-5356-EF0F-43D8-CFFB5BBAA808}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{25E7C63B-10C9-2281-EB71-A5739A940240}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{26071265-5B56-E1BD-07E3-50FFAE47FFA2}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{2641FC6B-EE23-C90B-62E6-ED85FA614FAC}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F64180221F0}] : (Java 8 Update 221 (64-bit).-.Oracle Corporation) -> MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F64180221F0} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{270FB07F-6252-8B82-A104-91D440DC7F13}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{28B38E4C-1FCC-0AB9-F2CE-7079DF8CF8A5}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{28DA82B8-2420-7D93-A3E6-1873FE8A436D}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{28F2CFCC-8954-AF1F-48FC-780576527AAB}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{29DC4128-CF89-49D9-A524-B4430F036F14}] : (DriversCloud.com (64 bits).-.Cybelsoft) -> MsiExec.exe /X{29DC4128-CF89-49D9-A524-B4430F036F14} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{29F35063-F14F-D4A8-5825-0F74240F25C3}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{2DFFBAB5-4B39-EF67-38C6-F89DCCA5E127}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{2F00E596-119B-4C2B-95F3-847BCC418AD5}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3159CDBD-7139-E044-3ECF-6A8D4620744D}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{32336B51-174A-E66A-DDF5-A641BC0CB7A8}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{331C140F-151D-3376-6218-EBCC1FE56A72}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3372CE65-1178-B53F-C228-254C7F7F118F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{33FF313C-78A1-35CE-2E12-93EC013CD42D}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3530D72B-E13A-E242-1B65-1D4A56FEB793}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3666E222-0332-4CEE-4772-EBCE5A291214}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3784F95B-4761-108E-1992-ABD39808BD4E}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3814DB30-091D-11E4-BDE0-F04DA23A5C58}] : (Vegas Pro 13.0 (64-bit).-.Sony) -> MsiExec.exe /X{3814DB30-091D-11E4-BDE0-F04DA23A5C58} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3A6B2719-1BD0-D01A-3F65-269955A3B21B}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3A8008D5-C834-1CA9-68CB-E9F49F0AB120}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3B98F96D-425E-F806-E65B-33516D7035CA}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3D21E7FF-A5D1-C459-DAD6-98A0734861C3}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3DE97849-544D-4D68-9255-11DF6F9F10D8}] : (Intel® Trusted Connect Service Client.-.Intel Corporation) -> MsiExec.exe /I{3DE97849-544D-4D68-9255-11DF6F9F10D8} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3E6969FD-A21A-2584-28F9-6F668F9C1EFD}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{3F62FA58-2980-138F-2FC3-7F9F909E8EF0}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{413A45F5-20F8-1760-22DF-000C80A392E5}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{4228ED6A-545D-EB64-7E47-33BCE078DC31}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{4428FB3D-6922-4717-BBF4-5E3A49B4724A}] : (Plantronics Hub Software.-.Plantronics, Inc.) -> MsiExec.exe /X{4428FB3D-6922-4717-BBF4-5E3A49B4724A} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{452BA5F3-6E3F-37B1-13D9-01231342C427}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{46C478DE-C381-4200-9627-0DA025B555EB}] : (Intel(R) Chipset Device Software.-.Intel Corporation) -> MsiExec.exe /I{46C478DE-C381-4200-9627-0DA025B555EB} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{4793D2FE-9842-F82B-F03F-05A89A0AC2E4}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{47E510DD-18B9-17F3-121E-B068BCD51D94}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{48B6C982-43A1-D193-0763-4D5BE4801D2D}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{49793B97-B420-E4DB-45FB-467F5275EFDD}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{49EF7101-09DD-C987-6848-2FA8A0159DB7}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{4C51F276-0642-44CD-1EAE-1A53DCA45C0A}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{4CB271A3-7EFD-6C7C-96BC-14E271AB63AB}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{4D512595-BDA6-E291-4BC6-CC2FF891AB05}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{4D5504E6-A94E-B3D2-EE92-872495AF814E}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{5066336E-513F-CBB9-9BB0-C89A3933C10F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{511FBA3E-FA09-BA46-22EE-50432AE3CEEE}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{51E9360E-0B90-EE7F-D840-28458BD048DA}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{523A30C8-FCB3-37B0-87CC-137A4B69FFD4}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{52A46417-A51E-B544-7A46-28AB2899246F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{58714532-951F-0C3A-8860-2ED7411C6D85}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{59546E97-8B2F-0F51-5191-BF19438164A8}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{598E3EC4-B4A4-3CE3-ED42-26D8A29210B5}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{5A51B53B-6BD4-FDE2-F5C1-395DCB1B011E}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{5B51C7DC-AE7B-4B94-AABB-822DA64E7B86}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{5D14DC00-5B53-EC24-CB48-1C6C3CF0B578}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{5E0FB053-0AE7-5466-E972-551F7BE9E1B7}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{5F65413B-7483-446A-AB9D-61EC13BD621E}] : (Intel(R) ME UninstallLegacy.-.Intel Corporation) -> MsiExec.exe /I{5F65413B-7483-446A-AB9D-61EC13BD621E} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{60836954-934F-0ECF-9C05-168DBECE2399}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{60EC2E2A-3C43-B5D6-382E-205D5E6C3A44}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{61121B12-88BD-4261-A6EE-AB32610A56De}] : (Python 2.7.8 (64-bit).-.Python Software Foundation) -> MsiExec.exe /I{61121B12-88BD-4261-A6EE-AB32610A56DE} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{614564F1-EC98-B820-E420-C400CA605A57}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{61C87839-E54E-F438-AF30-A8F4F451C4FA}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{6237346A-DDA6-19F0-03A7-818D85D64DEF}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{62C59C21-F5F5-41A1-B575-DE37FEAA285B}] : (4K Video Downloader 4.4.-.Open Media LLC) -> MsiExec.exe /X{62C59C21-F5F5-41A1-B575-DE37FEAA285B} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{66AFB595-BC05-2913-7696-6D58F9B733E1}] : (AMD Catalyst Install Manager.-.Advanced Micro Devices, Inc.) -> msiexec /q/x{66AFB595-BC05-2913-7696-6D58F9B733E1} REBOOT=ReallySuppress ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{66C5838F-B854-4A55-89E6-A6138747A4DF}] : (Epic Games Launcher Prerequisites (x64).-.Epic Games, Inc.) -> MsiExec.exe /X{66C5838F-B854-4A55-89E6-A6138747A4DF} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{66F96B6D-33A7-938C-2910-CA9C76E00742}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{672CA528-F352-CAA3-EED8-51A37A135585}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{686AF1D4-4D23-8115-9968-FE32775067C8}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{690285C2-2481-44FB-8402-162EA970A6DD}] : (Logitech Gaming Software.-.Logitech Inc.) -> MsiExec.exe /I{690285C2-2481-44FB-8402-162EA970A6DD} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{6CD61388-4F40-E91A-17A1-E821F0BB92E1}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{713FEC95-FF18-A1EA-F0F4-1F67043BDDA7}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{7180902D-C675-2E2E-F63C-0AB0039F33C2}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{724A76E5-F967-25B3-C2CD-36BEBBB10A40}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{72DF53CD-649B-4868-8DDB-41BF4260EA68}] : (AMD Settings - Branding.-.Advanced Micro Devices, Inc.) -> MsiExec.exe /I{72DF53CD-649B-4868-8DDB-41BF4260EA68} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{74BAFDC3-F576-DF05-30BB-DC664864845A}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{7559603B-C973-C9A4-F645-21AC07D7B74F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{75F098F0-9AC4-5F16-6AA6-A772197D6385}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{77D6A6E7-4771-44F5-EC4D-24D6AD296BE9}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{77E6694B-FAD1-FF2C-1EF6-42BFAF548865}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{78B5E5BC-C2B2-3439-0750-C9FC7AAE173B}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{79AA2624-E0B6-60FF-A36D-6CA102600587}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{7AE7CA86-C5E4-2A6C-0501-3CCE620D8F37}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{7C42C52E-DFF2-8BD6-5134-DCB5FBB8A5EE}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{7FDD47B2-94C4-2EF2-819C-40FB19AF267A}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{80C20F9B-C28F-E3ED-726C-86BFC24EEE3B}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{82397F12-1A38-2215-8090-9E9C5C90B798}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{83D51B96-9433-356B-EB77-F26F4DB6B622}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}] : (Classic Shell.-.IvoSoft) -> MsiExec.exe /X{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{84393ADC-D571-2F3C-0F22-CAD255BF8EE6}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{86F718E7-6AFB-1DFB-219E-AF7752F91C4E}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{87B2419A-F615-AD3A-3521-FFE0C4FE37DF}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{884596CF-79B1-13A0-7334-563BB3A75F45}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{88D913EA-E638-B59D-4281-98B6F434EDED}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{88DC06DE-350D-B3A6-99D7-D22820775D14}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{8A6F0F58-AE48-4F4C-A06F-C391AB17069C}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{8B13D211-0BCF-D7C6-4C96-11FD7EE045F9}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{8CC237F6-02EA-BA74-FBEB-70B7A9AF82B1}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{8E31F76F-74C3-47F1-9550-E041EEDC5FBB}_is1] : (vJoy Device Driver 2.1.8.38.-.Shaul Eizikovich) -> "C:\Program Files\vJoy\unins000.exe" [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{8EB955CE-AB34-0CF2-6BC1-33CBCE218910}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{8F4F9CAC-37A7-E424-2DBC-B9293E772F60}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{90E54AF6-25EF-94C1-EEBD-018348AAD188}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{9156041C-076A-0CE4-C60B-9407B22086F0}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{919A2EDC-34F8-C5C3-7276-A557992CFA60}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{91DF8F16-C2CC-A13A-7D7F-EA0A305A1F71}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{92E167CC-3D19-47EB-AE7F-A135427C3220}] : (Adblock Plus pour IE (32-bits et 64-bits).-.Eyeo GmbH) -> MsiExec.exe /X{92E167CC-3D19-47EB-AE7F-A135427C3220} ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{95231BA4-259D-421B-9CDF-0C8C71EBF075}] : (Intel(R) Management Engine Components.-.Intel Corporation) -> MsiExec.exe /I{95231BA4-259D-421B-9CDF-0C8C71EBF075} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{9556C483-2D67-6B2F-A15E-D83417604CE7}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{974D1BE0-CAA4-0C9D-5DEB-439D7B4D4B63}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{989A5B3A-77EC-6E2D-6AE8-1E91052E9495}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{98DD6106-888C-301A-AD03-753FF86838AE}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{994B3C1F-F48C-B29E-D88A-06322D70B45C}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{99FEF726-37BF-2652-082C-E3F8B95F4B5C}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{9C73DB4D-ECF4-B764-5FF7-4B7860BFC681}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{9D8F0660-1091-7367-345E-E58AD705CA41}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{9E7FF235-B49E-EA20-9F0E-BE1BA0C3890F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{9EE6146A-2CEE-53D0-FDDD-18BB92AB17D4}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{9FD0E0C9-9E88-A306-4BA3-41BC479446C8}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A069CDA1-2484-399C-5592-63F1C8F604DD}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A0C43CD7-AE8C-B0F3-4031-7565481DA451}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A312A358-3900-E831-040C-0D39825F3DD8}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A4525810-2BB6-4989-0E35-6D78826561BB}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A4AB9E6D-43AC-BA78-20E8-C0D0D8649F19}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A58C15ED-4645-4032-B6FE-4C8CD136FE1E}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A6462E6F-657C-6A40-FB8A-9F5F64687E16}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A6DDAAB5-8E83-AC96-E337-88F9623176A7}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A850BBE6-8614-7D44-2ACA-A8B98A73632F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{A88050CD-0501-3DCF-2DDA-D290D3E3DCAA}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{AA461BB2-9A5D-3E1E-05A6-3C1FCD768EEB}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{AAF31E58-E44A-994E-F65D-B41808FB3160}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{AC5FFA88-C684-D3F3-10A3-8619755538EC}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{AE48978D-678A-2575-D99A-E99305E62914}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{AED89989-7DBE-543C-19A4-BE5A855DD2FB}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{AF85D8EE-9549-9D67-19C6-586AEBC04FC8}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B041D3EF-D216-939F-4D59-EBD22DBBDDB4}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B05F28F6-B562-C4F7-CAE3-BDD77C16C3E3}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B16E9589-7E9F-DC0B-1B19-F898AE5A7C47}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B1F675C6-2EE2-A3B8-4379-15A8EA8335BB}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B5785026-68F5-6D7C-364E-4874C19BB0BB}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B5A6E829-0930-4993-B0BC-A6F822084BEE}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B709D228-78E5-4D06-6BD9-7C49CAF0F3A2}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B83BBB6A-8664-23D5-0D70-3EF040003503}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{B8C395E0-AEF2-D58B-C26A-A02849F9B42B}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{BB3FA5E5-3652-4EDD-1229-0487E93EE950}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{BC958BD2-5DAC-3862-BB1A-C1BE0790438D}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{BD555B5E-F1F9-3B62-18AD-DCF2E079AEB4}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{BE77874C-0353-49DF-A5BC-36A8FE51D95E}] : (Intel(R) Management Engine Components.-.Intel Corporation) -> MsiExec.exe /I{BE77874C-0353-49DF-A5BC-36A8FE51D95E} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{BEB25B1F-F7B4-CB01-5C0C-7FB3DE812AE3}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{BF07E05D-3D7C-6E4E-3843-DFE6D9FFACC8}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{BFC9CB7F-0CF3-478C-CF3D-5232DF7B14B3}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C0BE1CF5-F93D-2641-314B-85E2EB4A9256}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C105DB6E-CA11-9A0A-9419-0D1255173D39}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C1EB1702-1520-5BB2-9DED-5827FA12CB86}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C2CE1F6B-1866-DB80-2AD6-FD50E056821D}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C2E207A0-6375-140A-3170-50737EB32D29}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C5F114C0-4584-A637-C2E9-E8BCD6A2408F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C70FDFA1-4B45-FDCD-708B-CC97C3D8033A}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C7BAA2B7-63EC-8772-A355-52F36462CE21}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{C9968B3A-79A8-9F5F-857D-4C65DA94B86E}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{CBB687B2-9DF6-1939-B2E9-DFCB9C22DA70}] : (AMD Problem Report Wizard.-.Advanced Micro Devices, Inc.) -> MsiExec.exe /X{CBB687B2-9DF6-1939-B2E9-DFCB9C22DA70} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{CC7ABB10-3E53-1B06-F0EC-27603EAFABB3}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{CF858C19-75B3-513C-188F-A87FEF8B4A01}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{D0405779-60EA-E075-B6F3-8CB099401E8F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{D0EA7EFC-D5CD-D8B1-EB42-F72483CEAABF}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{D342FC9C-FC1A-EE75-9C83-98963901A71E}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{D6EDF10E-023C-198F-215B-5DD74E2B1D81}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{D7B63982-8094-4AEA-7A77-FA48FF2C1CCC}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{D8D5F56E-63B5-3290-4938-EE82D703DBEB}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{D955A619-B0BA-FB07-0590-675FA7A127CF}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{D99BA8BB-CCA8-204C-1867-E904459A8B73}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{DA20870D-E205-BB9B-9821-D75DA3F2613F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{DAC228C5-C688-1F91-EEFA-EAA15002639F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{DB27CA77-C209-BFF6-700D-88E3FFAFE63D}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{DBAE36A4-F2D8-F405-FB92-57C7BC546EC5}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{DD3D1B32-7AAA-6D38-310B-606A799A17FA}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{DEE5903A-E570-D884-8B6B-5A076A79212C}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{DF47369F-DBEA-8AB1-B562-0A815ED0C454}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{E0A7B9A3-F38E-BAC0-8A4B-F9CBE0EA1EE3}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{E0E70106-2707-EF80-4F75-3D33A48433D4}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{E415E57E-381B-1436-2E1E-CD01352910D1}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{E41836B9-D604-4B5E-B521-3E1C4BBBF297}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{E4551776-E23C-B5BE-1124-91643E733A2E}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{E8635DEF-7012-8FB7-8081-1D1BD460C306}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{E8D9A5F5-A76F-C1CB-2609-F09167AA5628}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{E99569A3-3BDB-5227-3BE9-36A81151D796}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{EBC36C18-E293-C3AC-9E8E-BA4BAC09346B}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{ED720098-D212-12DC-754D-E1E39AF0BC61}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{EE2AFCE4-0238-4DE0-A140-1647021627C1}] : (Branding64.-.Advanced Micro Devices, Inc.) -> MsiExec.exe /I{EE2AFCE4-0238-4DE0-A140-1647021627C1} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{EEEDD350-B86B-0FD7-CFF2-EF425C9443A7}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{EFA1C53D-859A-7890-A5FD-A46F8CC061B5}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F08A0BBC-9335-1BA0-79A9-732113E9DF1C}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F27AE362-13CD-3D68-94FD-20E4F92AADAE}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F2F6DE92-2BE9-55BA-DD8A-D23213949A51}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F38E5A65-9C76-3757-9D69-672FACA088D4}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F391790D-F08F-F4B5-77CD-668EBC078B1A}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F4039C0F-E4C1-5905-9E7D-DDA8EDE365BC}] : (Java(TM) SE Development Kit 11.0.1 (64-bit).-.Oracle Corporation) -> MsiExec.exe /X{F4039C0F-E4C1-5905-9E7D-DDA8EDE365BC} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F72DEA20-B7E3-60F7-E62F-AFACDEA189D4}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F8E2FEC7-85F0-3AF4-8E73-44E959167018}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F92DEA29-82F9-F1F1-E8A6-113CE36EEF64}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F937AF00-B63F-E9F4-1B52-4C903E347FCD}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{F951DBAB-D453-674A-BF66-7E346F1CC146}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{FACADE7F-B23F-576F-8D3E-7A3B5AA15564}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{FCB5675A-A034-2872-8361-00EE0391C399}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{FDA9F952-8DBD-112A-1244-0AD718D6C3A6}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{FE06C730-0296-42D9-B869-4E819D7F47A3}] : (Ableton Live 10 Suite.-.Ableton) -> MsiExec.exe /X{FE06C730-0296-42D9-B869-4E819D7F47A3} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{FE3A4EF1-321F-E349-AA89-14F6C4B5613F}] : (.-.) -> [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{FF8A9A91-1E72-EE4A-04DA-6E7F65CB626D}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{FF8F5F84-9660-40DB-BDAD-CCD03F6BD1F6}] : (Intel(R) Rapid Storage Technology.-.Intel Corporation) -> MsiExec.exe /I{FF8F5F84-9660-40DB-BDAD-CCD03F6BD1F6} [HKLM\SOFTWARE\Microsoft\windows\CurrentVersion\Uninstall\{FF9BDE5A-19D7-9CEE-1F84-BA92A3EFFD30}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\1237807960_is1] : (Dead Cells.-.GOG.com) -> "C:\GOG Games\Dead Cells\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\1437994027_is1] : (Dream.-.GOG.com) -> "C:\GOG Games\Dream\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\1446213994_is1] : (No Man's Sky.-.GOG.com) -> "C:\GOG Games\No Man's Sky\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\1452598881_is1] : (Starbound.-.GOG.com) -> "C:\GOG Games\Starbound\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\1453128328_is1] : (The Curious Expedition.-.GOG.com) -> "C:\GOG Games\The Curious Expedition\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\1661530902_is1] : (Clustertruck.-.GOG.com) -> "C:\GOG Games\Clustertruck\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\2022706229_is1] : (No Man's Sky Pre-order DLC.-.GOG.com) -> "C:\GOG Games\No Man's Sky\unins001.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\3DCD] : (BowieWorld by Worlds.com.-.) -> C:\WINDOWS\system32\UN-GAMMA.EXE C:\PROGRA~2\Worlds\BOWIEW~1.COM\INSTALL.LOG [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\AddressBook] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\ANNUCAPT64BITSAnnuCapt64bits] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\be.gip.twitch.TeeBoard] : (TeeBoard: The Twitch Army Knife.-.UNKNOWN) -> msiexec /qb /x {5826203C-6494-1498-165F-89F5DFA04652} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\be.gip.twitch.TMSViewer] : (Twitch Multi-Stream Viewer.-.UNKNOWN) -> msiexec /qb /x {C0E55931-A26F-462B-E337-3F09B147786D} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\CMake 3.0.0] : (CMake 3.0.0, a cross-platform, open-source build system.-.Kitware) -> C:\Program Files (x86)\CMake\Uninstall.exe ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Connection Manager] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Delta Force Land Warrior] : (Delta Force Land Warrior.-.) -> C:\WINDOWS\IsUn040c.exe -f"C:\Program Files (x86)\NovaLogic\Delta Force Land Warrior\Uninst.isu" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\DirectDrawEx] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\DiRT Rally 2 0_is1] : (DiRT Rally 2 0.-.) -> "C:\Program Files (x86)\DiRT Rally 2 0\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Distance_is1] : (Distance.-.) -> "C:\Program Files (x86)\Distance\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\DXM_Runtime] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Fontcore] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Fraps] : (Fraps (remove only).-.) -> "C:\Fraps\uninstall.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\gxx] : (Garena (remove only).-.Garena) -> C:\Program Files (x86)\Garena\Garena\2.0.1801.1820\uninst.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Hexplore] : (Hexplore.-.) -> C:\PROGRA~2\Hexplore\UNWISE.EXE C:\PROGRA~2\Hexplore\INSTALL.LOG [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\I-Doser] : (I-Doser Premium.-.I-Doser.com) -> "C:\Program Files (x86)\I-Doser Premium\Uninstall.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\IE40] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\IE4Data] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\IE5BAKEX] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\IEData] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\InstallShield Uninstall Information] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\isaactracker] : (isaactracker.-.) -> "C:\Program Files (x86)\isaactracker\uninstall.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\League of Legends 4.1.2] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Livestreamer] : (Livestreamer 1.12.2.-.) -> C:\Program Files (x86)\Livestreamer\uninstall-livestreamer.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\LogMeIn Hamachi] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\LOOT] : (LOOT.-.LOOT Development Team) -> "C:\Program Files (x86)\LOOT\Uninstall.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\mIRC] : (mIRC.-.mIRC Co. Ltd.) -> C:\Program Files (x86)\mIRC\uninstall.exe _?=C:\Program Files (x86)\mIRC [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\MobileOptionPack] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Moonlighter_is1] : (Moonlighter.-.) -> "C:\Program Files (x86)\Moonlighter\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\MPlayer2] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\MTG Arena 0.1.928.0] : (MTG Arena.-.Wizards of the Coast) -> msiexec.exe /x {28FF8103-3DD4-41AC-933F-F9E9B48C31E0} AI_UNINSTALLER_CTP=1 [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\My IP Suite_is1] : (My IP Suite.-.VASTSOFT) -> "C:\Program Files (x86)\My IP Suite\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Nox] : (Nox APP Player.-.Duodian Technology Co. Ltd.) -> C:\Program Files (x86)\Nox\bin\Nox_unload.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\OBS Studio] : (OBS Studio.-.OBS Project) -> C:\Program Files (x86)\obs-studio\uninstall.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Open Broadcaster Software] : (Open Broadcaster Software.-.) -> C:\Program Files (x86)\OBS\uninstall.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Phase Shift] : (Phase Shift.-.DWSK) -> "C:\Program Files (x86)\Phase Shift\uninstall.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\PlanetSide 2] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\RGVhZENvcmU=_is1] : (DeadCore.-.) -> "C:\Program Files (x86)\DeadCore\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\SchedulingAgent] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Scribblenauts Unlimited_is1] : (Scribblenauts Unlimited.-.) -> "C:\Program Files (x86)\WB Games\Scribblenauts Unlimited\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\SmartDraw CI] : (.-.SmartDraw, LLC) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Starbound Bounty Hunter_is1] : (Starbound Bounty Hunter.-.) -> "C:\Program Files (x86)\Starbound Bounty Hunter\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\The Escapists 2] : (The Escapists 2.-.) -> C:\Games\The Escapists 2\Uninstall.exe [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\The Witness_R.G. Mechanics_is1] : (The Witness.-.R.G. Mechanics, markfiter) -> "C:\Users\Timothée\AppData\Roaming\The Witness\Uninstall\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\Tiny Brains_is1] : (Tiny Brains.-.) -> "C:\Program Files (x86)\505 Games\Tiny Brains\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\vsetop.com Gang Beasts v0.5.6_is1] : (Gang Beasts v0.5.6.-.VseTop.Com) -> "C:\Games\Gang Beasts v0.5.6\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\WIC] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\XBCD] : (XBCD 1.07.-.Redcl0ud) -> C:\Program Files (x86)\XBCD\uninst.exe ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{03EB717E-7AF5-1D59-CD9B-CA7A6DBAA9AF}] : (Catalyst Control Center Graphics Previews Common.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7}] : (System Requirements Lab for Intel.-.Husdawg, LLC) -> MsiExec.exe /I{04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{0921F489-493D-D0DA-2D45-FDE6C97362FA}] : (CCC Help Hungarian.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}] : (Razer Synapse.-.Razer Inc.) -> MsiExec.exe /I{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{0E1BA7B8-38C7-7C07-5A30-C36C2D4987B4}] : (CCC Help Russian.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{11087D24-567D-7D88-69C6-D7A08B5F4C47}] : (Catalyst Control Center - Branding.-.Advanced Micro Devices, Inc.) -> MsiExec.exe /I{11087D24-567D-7D88-69C6-D7A08B5F4C47} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{121727D5-FDF3-4723-BA57-EB383440ED72}] : (OpenOffice 4.1.1.-.Apache Software Foundation) -> MsiExec.exe /I{121727D5-FDF3-4723-BA57-EB383440ED72} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{1421F102-2BDA-39D6-CCF0-9F4B3D6564E4}] : (CCC Help German.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{17BAD009-B4B2-8320-9159-AF7DD087D672}] : (CCC Help Czech.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{17D0F297-2B7C-E59F-4B62-5E505CF3159B}] : (Catalyst Control Center Localization All.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{17FA0444-A025-43B9-862C-81AE6307C2F2}] : (Epson Event Manager.-.Seiko Epson Corporation) -> MsiExec.exe /X{17FA0444-A025-43B9-862C-81AE6307C2F2} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{1AAD994E-2A06-3F04-A7DD-8C8AE98ECB32}] : (CCC Help Portuguese.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}] : (Minecraft.-.Mojang) -> MsiExec.exe /X{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{215C3078-DD8E-BAC4-695B-CFECF0C9BBFE}] : (AMD Catalyst Control Center.-.Nom de votre société) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{236120EE-D0C5-E909-191C-CC321B15269A}] : (CCC Help Swedish.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{2397C85A-6BB0-4398-99ED-06D6233E478A}] : (Epic Games Launcher.-.Epic Games, Inc.) -> MsiExec.exe /X{2397C85A-6BB0-4398-99ED-06D6233E478A} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F32180221F0}] : (Java 8 Update 221.-.Oracle Corporation) -> MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F32180221F0} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83218066F0}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83218071F0}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83218073F0}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83218077F0}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83218091F0}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{2865326D-9A90-C0E3-2A54-C55E9C3E9945}] : (CCC Help Turkish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{28FF8103-3DD4-41AC-933F-F9E9B48C31E0}] : (MTG Arena.-.Wizards of the Coast) -> MsiExec.exe /X{28FF8103-3DD4-41AC-933F-F9E9B48C31E0} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{2C1E2874-AE02-5082-1C97-F333A5412778}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{36404440-3A39-C9B5-4713-2DB315DEF034}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{391CC42A-6DAC-D0D9-C155-3B275A731D67}] : (CCC Help Swedish.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{39AB83D4-D415-4FDC-B836-5A876F14FA53}] : (Image to PDF Converter Free.-.PDFArea Software) -> MsiExec.exe /I{39AB83D4-D415-4FDC-B836-5A876F14FA53} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{39E1C2BE-D6DB-608F-D28F-ECE143F858E3}] : (CCC Help Greek.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{3A6E64DC-A067-0C8A-B794-F0E9CD0DA537}] : (CCC Help Russian.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}] : (Skype™ 7.36.-.Skype Technologies S.A.) -> MsiExec.exe /X{3B7E914A-93D5-4A29-92BB-AF8C3F66C431} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{3E275667-C19E-1AC0-A9EC-6D37AE67469C}] : (Catalyst Control Center InstallProxy.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{3ED6F839-6A04-5DD3-6548-E7D011273067}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{41042F55-42EC-90CD-FEF3-26741B73E546}] : (CCC Help Norwegian.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{41ED8BA7-FC73-25DD-037E-8F8BDD645228}] : (CCC Help Japanese.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{4642052A-C2D4-541B-AC98-3F494682D51E}] : (CCC Help English.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{4860E1E1-0860-3A85-4C5E-F4E009138F93}] : (CCC Help Thai.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{48F22622-1CC2-4A83-9C1E-644DD96F832D}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{4A03706F-666A-4037-7777-5F2748764D10}] : (Java Auto Updater.-.Oracle Corporation) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{503CDCAD-100E-5F9A-F15C-0EDDA1460071}] : (CCC Help Czech.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{5396FBD8-8BD7-47F9-92AE-F62F13D5A11D}] : (NETGEAR WG111v3 wireless USB 2.0 adapter.-.Nom de votre société) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{53E413B3-2417-4BD1-984D-8C92C81C231F}_is1] : (SpaceEngine version 0.9.7.1.-.SpaceEngine) -> "C:\Games\SpaceEngine 0.971\system\unins000.exe" ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{5826203C-6494-1498-165F-89F5DFA04652}] : (TeeBoard: The Twitch Army Knife.-.UNKNOWN) -> MsiExec.exe /I{5826203C-6494-1498-165F-89F5DFA04652} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{582876EC-A178-44D4-9823-C10D6C62EAFF}] : (.-.) -> MsiExec /X{8B922CF8-8A6C-41CE-A858-F1755D7F5D29} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{5CAE7D98-7D67-3121-AE6F-30831D109286}] : (CCC Help Polish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{608E1B9B-A2E8-4A1F-8BAB-874EB0DD25E3}] : (Intel(R) Update Manager.-.Intel Corporation) -> MsiExec.exe /X{608E1B9B-A2E8-4A1F-8BAB-874EB0DD25E3} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{60D8228D-16E5-29A0-87DA-8070AF5DE35E}] : (Catalyst Control Center Graphics Previews Common.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}] : (Google Update Helper.-.Google LLC) -> MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{610FE6C7-A37E-AE3A-31BD-4663976116D8}] : (Catalyst Control Center Localization All.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{61121B12-88BD-4261-A6EE-AB32610A56DD}] : (Python 2.7.8.-.Python Software Foundation) -> MsiExec.exe /I{61121B12-88BD-4261-A6EE-AB32610A56DD} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{66B88C33-80CB-4A26-8434-24E140B49100}_is1] : (Tales Of Berseria.-.Namco Bandai) -> "C:\Program Files (x86)\Tales of Berseria\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{6B623E0A-8ABC-0C56-8950-57582A04F6BC}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{73B373AE-228C-DA67-82FC-8B9618E61216}] : (CCC Help Dutch.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{78DC2EB8-2609-BA11-25AA-2CADD8D70A4E}] : (CCC Help Chinese Traditional.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{7A4DBF6C-F182-7A08-7143-553DBB396E5F}] : (CCC Help Portuguese.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{7F9A97E6-E666-11E5-B582-B88687E82322}] : (Hextech Repair Tool.-.Riot Games, Inc.) -> MsiExec.exe /I{7F9A97E6-E666-11E5-B582-B88687E82322} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{80680785-2EE1-053F-9CD3-4B2C904596EE}] : (Catalyst Control Center InstallProxy.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{818F40E7-A767-4C81-BBF3-3D484A145C1C}] : (ILLUSION ???????.-.ILLUSION) -> MsiExec.exe /X{818F40E7-A767-4C81-BBF3-3D484A145C1C} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{83BD0D59-6E0E-34B2-F25F-5F950E133599}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}] : (Manuels EPSON.-.SEIKO EPSON CORPORATION) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{87A68B07-00F9-4A94-A60A-0015A7547A33}] : (YGOPro DevPro Launcher.-.DevPro, LLC) -> MsiExec.exe /I{87A68B07-00F9-4A94-A60A-0015A7547A33} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{88547073-C566-4895-9005-EBE98EA3F7C7}] : (Samsung Kies3.-.Samsung Electronics Co., Ltd.) -> MsiExec.exe /I{88547073-C566-4895-9005-EBE98EA3F7C7} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{8871FE83-B6A4-45AC-257F-1082F42466BC}] : (CCC Help German.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{88E62BD7-A532-48F6-8428-D949BB93A2D7}] : (Play Wireless USB Adapter.-.Belkin) -> MsiExec.exe /X{88E62BD7-A532-48F6-8428-D949BB93A2D7} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{8B130A5A-C724-7BE4-3B4D-4CB06FDC891E}] : (CCC Help Korean.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}] : (NVIDIA PhysX.-.NVIDIA Corporation) -> MsiExec.exe /I{8B922CF8-8A6C-41CE-A858-F1755D7F5D29} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{8DBC5A0A-31C4-46C7-B252-6B593EA11A87}] : (Software Updater.-.SEIKO EPSON CORPORATION) -> MsiExec.exe /X{8DBC5A0A-31C4-46C7-B252-6B593EA11A87} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{8FA6AFC5-8DCD-7C04-C0DF-A9769336EFEC}] : (CCC Help Finnish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{904FC5BA-57A0-47AD-4669-BE3F5D9457C8}] : (CCC Help Polish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{90A4562F-D4A1-4B65-906D-41F236CF6902}] : (Path of Exile.-.Grinding Gear Games) -> MsiExec.exe /X{90A4562F-D4A1-4B65-906D-41F236CF6902} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{933B4015-4618-4716-A828-5289FC03165F}] : (VC80CRTRedist - 8.0.50727.6195.-.DivX, Inc) -> MsiExec.exe /I{933B4015-4618-4716-A828-5289FC03165F} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{93FD7F50-FC1A-4A51-98B5-A6FCC23A53E0}] : (Mumble 1.2.10.-.Thorvald Natvig) -> MsiExec.exe /I{93FD7F50-FC1A-4A51-98B5-A6FCC23A53E0} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{9534B382-24CE-4782-ADE6-2EB0C19A152F}_is1] : (ZELOTES T-80 version 2.10.-.zelotes, Inc.) -> "C:\Program Files (x86)\ZELOTES T-80\unins000.exe" [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{95EB2FCC-AE0B-40E9-B804-347C6358923B}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{9B62F80F-4224-F447-295B-5AAE27DBEF0E}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{9E9E775E-DA39-B534-DB4C-AA16CA3FD189}] : (CCC Help Finnish.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{A126E617-63F0-4E57-BFA4-7190F5845C39}] : (Guitar Hero World Tour.-.Aspyr) -> MsiExec.exe /X{A126E617-63F0-4E57-BFA4-7190F5845C39} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{A428D5A3-B0D4-4D63-9795-2D7E2B255647}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{A467B938-9780-978E-0397-CEB7A827B446}] : (CCC Help Korean.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}] : (Google Update Helper.-.Google Inc.) -> MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{AA144318-60C2-24EB-7563-DE1B0D13CCC9}] : (CCC Help Italian.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{AA274218-25A7-BC16-1995-42111EE7371E}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{AFCE4D19-D385-4232-9B0E-809D85A25A10}] : (NETGEAR WN111 wireless USB 2.0 adapter.-.NETGEAR) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{B41E2EA6-F400-3D38-2A34-09EA8ABD7BDF}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{B455E95A-B804-439F-B533-336B1635AE97}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{B5BE6E09-9120-A176-CB43-6B488797468A}] : (CCC Help English.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{BB4B2A48-8A24-2F68-93BE-E21C22829F02}] : (CCC Help Japanese.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{BEB5FB69-4080-466F-96C4-F15DF271718B}_is1] : (Project 64 version 2.2.0.3.-.) -> "C:\Program Files (x86)\Project64 2.2\unins000.exe" ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{C0E55931-A26F-462B-E337-3F09B147786D}] : (Twitch Multi-Stream Viewer.-.UNKNOWN) -> MsiExec.exe /I{C0E55931-A26F-462B-E337-3F09B147786D} [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{C230A275-D2A0-446B-ACE5-06BF067D50F2}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{C28E8D4A-C424-71CF-DFBE-597810641712}] : (Catalyst Control Center InstallProxy.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{C3592426-531E-4110-911D-BFECE2CE284B}] : (puush.-.Dean Herbert) -> MsiExec.exe /X{C3592426-531E-4110-911D-BFECE2CE284B} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{C79C2FE1-0702-6128-8DCB-5B623601DACC}] : (CCC Help Danish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{CA9C83CD-2712-2AEC-BF09-4FDB86B38FFD}] : (CCC Help Greek.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{CC354C55-3207-92F0-FF32-6966CACCC605}] : (.-.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{CDF9E1C8-4B97-4F8B-A848-7DD0E8BEB89F}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{CE1798D0-E5CC-B5A9-FAD5-94B30F6ADAFC}] : (CCC Help Spanish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{D1469C7F-7AA2-1691-7071-64BAA5DFF58E}] : (CCC Help French.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{D3E1F3C6-3FB9-A5CA-B99C-A7BFA220E22C}] : (CCC Help Hungarian.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{D404B889-DA48-2679-BDB9-7EF7F713793F}] : (CCC Help Chinese Standard.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{D93841F5-E1E4-A3E5-67E1-981A2247AE25}] : (CCC Help Chinese Traditional.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{E1A2E051-585A-D7B1-A461-79424494ACF9}] : (CCC Help Turkish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{E3763D79-64F2-7CD2-06E6-D8BCE6390613}] : (CCC Help Norwegian.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{E3775B1D-1BA5-8DAC-8960-8CF8E2C6FAC8}] : (Application Profiles.-.Advanced Micro Devices, Inc.) -> MsiExec.exe /X{E3775B1D-1BA5-8DAC-8960-8CF8E2C6FAC8} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{E3827F8B-56EA-C716-5284-07A1786DBBE2}] : (Catalyst Control Center InstallProxy.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{E3E0C380-EBCE-8872-5C82-E977214B000F}] : (CCC Help Thai.-.Advanced Micro Devices, Inc.) -> [HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{EBFF2EA1-3944-4CA2-89FA-8B70C0058DD3}] : (.-.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{EC949E53-E0D0-8CC2-E315-5688675425A7}] : (CCC Help Spanish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{ECB5BACC-2C32-5CF4-7541-F18080CC352E}] : (CCC Help Dutch.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{EDDC46EA-DF0A-E6CB-4C1A-285B40A72339}] : (CCC Help Italian.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{EE2E5B41-C4BF-99E5-9DA6-488D36FF0D41}] : (CCC Help Chinese Standard.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{F1596E55-74AC-C362-905A-8E5F079DAF6C}] : (CCC Help French.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{F3E3E7AA-BAD5-FE05-5665-8C2AB3F79AB2}] : (CCC Help Danish.-.Advanced Micro Devices, Inc.) -> ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{F5B72D9E-D86C-4002-BCF1-C2EDDEB1A661}] : (Adobe AIR.-.Adobe Systems Incorporated) -> MsiExec.exe /I{F5B72D9E-D86C-4002-BCF1-C2EDDEB1A661} ----------[{Hidden}][HKLM\SOFTWARE\WOW6432Node\Microsoft\windows\CurrentVersion\Uninstall\{FC8A7918-D65D-440C-9596-C88185E8DCA4}] : (Activision(R).-.Activision) -> ---------- | Ports ---------- | Installer [HKCR\Installer\Products\037C60EF69209D248B96E418D9F7743A] : Ableton Live 10 Suite [HKCR\Installer\Products\03BD4183D1904E11DB0E0FD42AA3C585] : Vegas Pro 13.0 (64-bit) -> C:\WINDOWS\Installer\{3814DB30-091D-11E4-BDE0-F04DA23A5C58}\vegas.ico [HKCR\Installer\Products\05F7DF39A1CF15A4895B6ACF2CA3350E] : Mumble 1.2.10 -> C:\WINDOWS\Installer\{93FD7F50-FC1A-4A51-98B5-A6FCC23A53E0}\mumble.ico [HKCR\Installer\Products\083C0E3EECBE2788C5289E7712B400F0] : CCC Help Thai -> C:\WINDOWS\Installer\{E3E0C380-EBCE-8872-5C82-E977214B000F}\ARPPRODUCTICON.exe [HKCR\Installer\Products\0D8971ECCC5E9A5BAF5D493BF0A6ADCF] : CCC Help Spanish -> C:\WINDOWS\Installer\{CE1798D0-E5CC-B5A9-FAD5-94B30F6ADAFC}\ARPPRODUCTICON.exe [HKCR\Installer\Products\13955E0CF62AB2643E73F3901B7487D6] : Twitch Multi-Stream Viewer [HKCR\Installer\Products\14B5E2EEFB4C5E99D96A84D863FFD014] : CCC Help Chinese Standard -> C:\WINDOWS\Installer\{EE2E5B41-C4BF-99E5-9DA6-488D36FF0D41}\ARPPRODUCTICON.exe [HKCR\Installer\Products\150E2A1EA5851B7D4A1697244449CA9F] : CCC Help Turkish -> C:\WINDOWS\Installer\{E1A2E051-585A-D7B1-A461-79424494ACF9}\ARPPRODUCTICON.exe [HKCR\Installer\Products\1E1E0684068058A3C4E54F0E9031F839] : CCC Help Thai -> C:\WINDOWS\Installer\{4860E1E1-0860-3A85-4C5E-F4E009138F93}\ARPPRODUCTICON.exe [HKCR\Installer\Products\1EF2C97C20708216D8BCB5266310ADCC] : CCC Help Danish -> C:\WINDOWS\Installer\{C79C2FE1-0702-6128-8DCB-5B623601DACC}\ARPPRODUCTICON.exe [HKCR\Installer\Products\201F1241ADB26D93CC0FF9B4D356464E] : CCC Help German -> C:\WINDOWS\Installer\{1421F102-2BDA-39D6-CCF0-9F4B3D6564E4}\ARPPRODUCTICON.exe [HKCR\Installer\Products\21B12116DB8816246AEEBA2316A065DD] : Python 2.7.8 [HKCR\Installer\Products\21B12116DB8816246AEEBA2316A065ED] : Python 2.7.8 (64-bit) [HKCR\Installer\Products\28C431C128A961444BE6EAFC559EEF14] : Intel(R) Management Engine Components [HKCR\Installer\Products\2B786BBC6FD993912B9EFDBCC922AD07] : AMD Problem Report Wizard -> C:\WINDOWS\Installer\{CBB687B2-9DF6-1939-B2E9-DFCB9C22DA70}\ARPPRODUCTICON.exe [HKCR\Installer\Products\2C5820961842BF44482061E29A076ADD] : Logitech Gaming Software [HKCR\Installer\Products\2EEB87D0FF8F8944FAA1F38FC1DEA86C] : Razer Synapse -> C:\WINDOWS\Installer\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}\ARPPRODUCTICON.exe [HKCR\Installer\Products\3018FF824DD3CA1439F39F9E4BC8130E] : MTG Arena -> C:\WINDOWS\Installer\{28FF8103-3DD4-41AC-933F-F9E9B48C31E0}\Icon_1.exe [HKCR\Installer\Products\30DD1C25E4016CA4D96C125D5827E11D] : UpdateAssistant [HKCR\Installer\Products\311F0A51C2FB21C4A88A24EAD0A91E9C] : EpsonNet Print [HKCR\Installer\Products\35E949CE0D0E2CC83E5165887645527A] : CCC Help Spanish -> C:\WINDOWS\Installer\{EC949E53-E0D0-8CC2-E315-5688675425A7}\ARPPRODUCTICON.exe [HKCR\Installer\Products\37074588665C59840950BE9EE83A7F7C] : Samsung Kies3 -> C:\WINDOWS\Installer\{88547073-C566-4895-9005-EBE98EA3F7C7}\ARPPRODUCTICON.exe [HKCR\Installer\Products\38EF17884A6BCA5452F701284F4266CB] : CCC Help German -> C:\WINDOWS\Installer\{8871FE83-B6A4-45AC-257F-1082F42466BC}\ARPPRODUCTICON.exe [HKCR\Installer\Products\3ACB61C11CBE6F946832F8FB9BCC8C27] : Minecraft -> C:\WINDOWS\Installer\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}\minecraft.ico [HKCR\Installer\Products\42D78011D76588D7966C7D0AB8F5C474] : Catalyst Control Center - Branding -> C:\WINDOWS\Installer\{11087D24-567D-7D88-69C6-D7A08B5F4C47}\ARPPRODUCTICON.exe [HKCR\Installer\Products\4440AF71520A9B3468C218EA36702C2F] : Epson Event Manager -> C:\WINDOWS\Installer\{17FA0444-A025-43B9-862C-81AE6307C2F2}\icon.exe [HKCR\Installer\Products\48F5F8FF0669BD04DBDACC0DF3B61D6F] : Intel(R) Rapid Storage Technology [HKCR\Installer\Products\4AB13259D952B124C9FDC0C817BE0F57] : Intel(R) Management Engine Components [HKCR\Installer\Products\4D38BA93514DCDF48B63A578F641AF35] : Image to PDF Converter Free [HKCR\Installer\Products\4EA42A62D9304AC4784BF2238120120F] : Java 8 Update 221 -> C:\Program Files (x86)\Java\jre1.8.0_221\\bin\javaws.exe [HKCR\Installer\Products\4EA42A62D9304AC4784BF2468120120F] : Java 8 Update 221 (64-bit) -> C:\Program Files\Java\jre1.8.0_221\\bin\javaws.exe [HKCR\Installer\Products\4ECFA2EE83200ED41A0461742061721C] : Branding64 -> C:\WINDOWS\Installer\{EE2AFCE4-0238-4DE0-A140-1647021627C1}\ARPPRODUCTICON.exe [HKCR\Installer\Products\5104B339816461748A822598CF3061F5] : VC80CRTRedist - 8.0.50727.6195 [HKCR\Installer\Products\55352E2BE42CD7E4A83D54D595188083] : Update for Windows 10 for x64-based Systems (KB4023057) [HKCR\Installer\Products\55E6951FCA47263C09A5E8F570D9FAC6] : CCC Help French -> C:\WINDOWS\Installer\{F1596E55-74AC-C362-905A-8E5F079DAF6C}\ARPPRODUCTICON.exe [HKCR\Installer\Products\55F24014CE24DC09EF3F6247B1375E64] : CCC Help Norwegian -> C:\WINDOWS\Installer\{41042F55-42EC-90CD-FEF3-26741B73E546}\ARPPRODUCTICON.exe [HKCR\Installer\Products\587086081EE2F350C93DB4C2095469EE] : Catalyst Control Center InstallProxy -> C:\WINDOWS\Installer\{80680785-2EE1-053F-9CD3-4B2C904596EE}\ARPPRODUCTICON.exe [HKCR\Installer\Products\590AED711EE82A94CAA56936BD90F89A] : CSR Harmony Wireless Software Stack -> C:\WINDOWS\Installer\{17DEA095-8EE1-49A2-AC5A-9663DB098FA9}\ARPPRODUCTICON.exe [HKCR\Installer\Products\595BFA6650CB31926769D6859F7B331E] : AMD Catalyst Install Manager -> C:\WINDOWS\Installer\{66AFB595-BC05-2913-7696-6D58F9B733E1}\ARPPRODUCTICON.exe [HKCR\Installer\Products\5B09ABC1BA85D4A41835ECA32CDF21D9] : AMD Settings - Branding -> C:\WINDOWS\Installer\{1CBA90B5-58AB-4A4D-8153-CE3AC2FD129D}\ARPPRODUCTICON.exe [HKCR\Installer\Products\5CFA6AF8DCD840C70CFD9A673963FECE] : CCC Help Finnish -> C:\WINDOWS\Installer\{8FA6AFC5-8DCD-7C04-C0DF-A9769336EFEC}\ARPPRODUCTICON.exe [HKCR\Installer\Products\5D7271213FDF3274AB75BE834304DE27] : OpenOffice 4.1.1 -> C:\WINDOWS\Installer\{121727D5-FDF3-4723-BA57-EB383440ED72}\soffice.ico [HKCR\Installer\Products\5DB88A11950F3474189D4123CAC9D3E4] : Oracle VM VirtualBox 5.1.26 -> C:\WINDOWS\Installer\{11A88BD5-F059-4743-81D9-1432AC9C3D4E}\IconVirtualBox [HKCR\Installer\Products\5F14839D4E1E5E3A761E89A12274EA52] : CCC Help Chinese Traditional -> C:\WINDOWS\Installer\{D93841F5-E1E4-A3E5-67E1-981A2247AE25}\ARPPRODUCTICON.exe [HKCR\Installer\Products\6242953CE135011419D1FBCE2EEC82B4] : puush -> C:\WINDOWS\Installer\{C3592426-531E-4110-911D-BFECE2CE284B}\osunew_0001.ico [HKCR\Installer\Products\6C3F1E3D9BF3AC5A9BC97AFB2A022EC2] : CCC Help Hungarian -> C:\WINDOWS\Installer\{D3E1F3C6-3FB9-A5CA-B99C-A7BFA220E22C}\ARPPRODUCTICON.exe [HKCR\Installer\Products\6E79A9F7666E5E115B288B68788E3222] : Hextech Repair Tool -> C:\WINDOWS\Installer\{7F9A97E6-E666-11E5-B582-B88687E82322}\Hextech_Repair_Tool_exe_icon [HKCR\Installer\Products\716E621A0F3675E4FB4A17095F48C593] : Guitar Hero World Tour -> C:\WINDOWS\Installer\{A126E617-63F0-4E57-BFA4-7190F5845C39}\ARPPRODUCTICON.exe [HKCR\Installer\Products\766572E3E91C0CA19ACED673EA7664C9] : Catalyst Control Center InstallProxy -> C:\WINDOWS\Installer\{3E275667-C19E-1AC0-A9EC-6D37AE67469C}\ARPPRODUCTICON.exe [HKCR\Installer\Products\792F0D71C7B2F95EB426E505C53F51B9] : Catalyst Control Center Localization All -> C:\WINDOWS\Installer\{17D0F297-2B7C-E59F-4B62-5E505CF3159B}\ARPPRODUCTICON.exe [HKCR\Installer\Products\7AB8DE1437CFDD5230E7F8B8DD462582] : CCC Help Japanese -> C:\WINDOWS\Installer\{41ED8BA7-FC73-25DD-037E-8F8BDD645228}\ARPPRODUCTICON.exe [HKCR\Installer\Products\7B58C0486D3D3414A99FAD8EF05DC4CF] : Classic Shell -> C:\WINDOWS\Installer\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}\icon.ico [HKCR\Installer\Products\7C6EF016E73AA3EA13DB64367916618D] : Catalyst Control Center Localization All -> C:\WINDOWS\Installer\{610FE6C7-A37E-AE3A-31BD-4663976116D8}\ARPPRODUCTICON.exe [HKCR\Installer\Products\7DB26E88235A6F8448829D94BB392A7D] : Play Wireless USB Adapter [HKCR\Installer\Products\813441AA2C06BE425736EDB1D031CC9C] : CCC Help Italian -> C:\WINDOWS\Installer\{AA144318-60C2-24EB-7563-DE1B0D13CCC9}\ARPPRODUCTICON.exe [HKCR\Installer\Products\8197A8CFD56DC04459698C18588ECD4A] : Activision(R) -> C:\WINDOWS\Installer\{FC8A7918-D65D-440C-9596-C88185E8DCA4}\ARPPRODUCTICON.exe [HKCR\Installer\Products\8214CD9298FC9D945A424B34F030F641] : DriversCloud.com (64 bits) -> C:\WINDOWS\Installer\{29DC4128-CF89-49D9-A524-B4430F036F14}\maconfico [HKCR\Installer\Products\839B764A0879E8793079EC7B8A724B64] : CCC Help Korean -> C:\WINDOWS\Installer\{A467B938-9780-978E-0397-CEB7A827B446}\ARPPRODUCTICON.exe [HKCR\Installer\Products\84A2B4BB42A886F239EB2EC12228F920] : CCC Help Japanese -> C:\WINDOWS\Installer\{BB4B2A48-8A24-2F68-93BE-E21C22829F02}\ARPPRODUCTICON.exe [HKCR\Installer\Products\8703C512E8DD4CAB96B5FCCE0F9CBBEF] : AMD Catalyst Control Center -> C:\WINDOWS\Installer\{215C3078-DD8E-BAC4-695B-CFECF0C9BBFE}\ARPPRODUCTICON.exe [HKCR\Installer\Products\89D7EAC576D71213EAF60338D1012968] : CCC Help Polish -> C:\WINDOWS\Installer\{5CAE7D98-7D67-3121-AE6F-30831D109286}\ARPPRODUCTICON.exe [HKCR\Installer\Products\8B7AB1E07C8370C7A5033CC6D294784B] : CCC Help Russian -> C:\WINDOWS\Installer\{0E1BA7B8-38C7-7C07-5A30-C36C2D4987B4}\ARPPRODUCTICON.exe [HKCR\Installer\Products\8BE2CD87906211AB52AAC2DA8D7DA0E4] : CCC Help Chinese Traditional -> C:\WINDOWS\Installer\{78DC2EB8-2609-BA11-25AA-2CADD8D70A4E}\ARPPRODUCTICON.exe [HKCR\Installer\Products\8DBF69357DB89F7429EA6FF2315D1AD1] : NETGEAR WG111v3 wireless USB 2.0 adapter -> C:\WINDOWS\Installer\{5396FBD8-8BD7-47F9-92AE-F62F13D5A11D}\ARPPRODUCTICON.exe [HKCR\Installer\Products\8FC229B8C6A8EC148A851F57D5F7D592] : NVIDIA PhysX -> C:\WINDOWS\Installer\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}\icon.ico [HKCR\Installer\Products\900DAB712B4B02381995FAD70D786D27] : CCC Help Czech -> C:\WINDOWS\Installer\{17BAD009-B4B2-8320-9159-AF7DD087D672}\ARPPRODUCTICON.exe [HKCR\Installer\Products\90E6EB5B0219671ABC34B684787964A8] : CCC Help English -> C:\WINDOWS\Installer\{B5BE6E09-9120-A176-CB43-6B488797468A}\ARPPRODUCTICON.exe [HKCR\Installer\Products\91D4ECFA583D2324B9E008D9582AA501] : NETGEAR WN111 wireless USB 2.0 adapter [HKCR\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E] : Google Update Helper [HKCR\Installer\Products\94879ED3D44586D4295511FDF6F9018D] : Intel® Trusted Connect Service Client [HKCR\Installer\Products\96F071321C0420729022000010000000] : 7-Zip 9.22 (x64 edition) [HKCR\Installer\Products\97D3673E2F462DC7606E8DCB6E936031] : CCC Help Norwegian -> C:\WINDOWS\Installer\{E3763D79-64F2-7CD2-06E6-D8BCE6390613}\ARPPRODUCTICON.exe [HKCR\Installer\Products\984F1290D394AD0DD254DF6E9C3726AF] : CCC Help Hungarian -> C:\WINDOWS\Installer\{0921F489-493D-D0DA-2D45-FDE6C97362FA}\ARPPRODUCTICON.exe [HKCR\Installer\Products\988B404D84AD9762DB9BE77F7F3197F3] : CCC Help Chinese Standard -> C:\WINDOWS\Installer\{D404B889-DA48-2679-BDB9-7EF7F713793F}\ARPPRODUCTICON.exe [HKCR\Installer\Products\A089CE062ADB6BC44A720BA745894BAC] : Google Update Helper [HKCR\Installer\Products\A0A5CBD84C137C642B25B695E31AA178] : Software Updater -> C:\WINDOWS\Installer\{8DBC5A0A-31C4-46C7-B252-6B593EA11A87}\icon.ico [HKCR\Installer\Products\A24CC193CAD69D0D1C55B372A537D176] : CCC Help Swedish -> C:\WINDOWS\Installer\{391CC42A-6DAC-D0D9-C155-3B275A731D67}\ARPPRODUCTICON.exe [HKCR\Installer\Products\A25024644D2CB145CA89F39464285DE1] : CCC Help English -> C:\WINDOWS\Installer\{4642052A-C2D4-541B-AC98-3F494682D51E}\ARPPRODUCTICON.exe [HKCR\Installer\Products\A419E7B35D3992A429BBFAC8F3664C13] : Skype™ 7.36 -> C:\WINDOWS\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe [HKCR\Installer\Products\A4D8E82C424CFC17FDEB958701467121] : Catalyst Control Center InstallProxy -> C:\WINDOWS\Installer\{C28E8D4A-C424-71CF-DFBE-597810641712}\ARPPRODUCTICON.exe [HKCR\Installer\Products\A58C79320BB6893499DE606D32E374A8] : Epic Games Launcher -> C:\WINDOWS\Installer\{2397C85A-6BB0-4398-99ED-06D6233E478A}\Installer.ico [HKCR\Installer\Products\A5A031B8427C4EB7B3D4C40BF6CD98E1] : CCC Help Korean -> C:\WINDOWS\Installer\{8B130A5A-C724-7BE4-3B4D-4CB06FDC891E}\ARPPRODUCTICON.exe [HKCR\Installer\Products\AA7E3E3F5DAB50EF6556C8A23B7FA92B] : CCC Help Danish -> C:\WINDOWS\Installer\{F3E3E7AA-BAD5-FE05-5665-8C2AB3F79AB2}\ARPPRODUCTICON.exe [HKCR\Installer\Products\AB5CF4090A75DA746496EBF3D549758C] : CCC Help Polish -> C:\WINDOWS\Installer\{904FC5BA-57A0-47AD-4669-BE3F5D9457C8}\ARPPRODUCTICON.exe [HKCR\Installer\Products\AE64CDDEA0FDBC6EC4A182B5047A3293] : CCC Help Italian -> C:\WINDOWS\Installer\{EDDC46EA-DF0A-E6CB-4C1A-285B40A72339}\ARPPRODUCTICON.exe [HKCR\Installer\Products\B1CCEC48FE121B14A919E327E4D5993D] : Manuels EPSON -> C:\WINDOWS\Installer\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}\EPSMICO.ICO [HKCR\Installer\Products\B31456F53847A644BAD916CE31DB26E1] : Intel(R) ME UninstallLegacy [HKCR\Installer\Products\B8F7283EAE65617C2548701A87D6BB2E] : Catalyst Control Center InstallProxy -> C:\WINDOWS\Installer\{E3827F8B-56EA-C716-5284-07A1786DBBE2}\ARPPRODUCTICON.exe [HKCR\Installer\Products\B9B1E8068E2AF1A4B8BA78E40BDD523E] : Intel(R) Update Manager [HKCR\Installer\Products\C30262854946894161F5985FFD0A6425] : TeeBoard: The Twitch Army Knife [HKCR\Installer\Products\C47877EB3530FD945ACB638AEF159DE5] : Intel(R) Management Engine Components [HKCR\Installer\Products\C6FBD4A7281F80A7173455D3BB93E6F5] : CCC Help Portuguese -> C:\WINDOWS\Installer\{7A4DBF6C-F182-7A08-7143-553DBB396E5F}\ARPPRODUCTICON.exe [HKCR\Installer\Products\CC761E2991D3BE74EAF71A5324C72302] : Adblock Plus pour IE (32-bits et 64-bits) -> C:\WINDOWS\Installer\{92E167CC-3D19-47EB-AE7F-A135427C3220}\program_icon [HKCR\Installer\Products\CCAB5BCE23C24FC557141F0808CC53E2] : CCC Help Dutch -> C:\WINDOWS\Installer\{ECB5BACC-2C32-5CF4-7541-F18080CC352E}\ARPPRODUCTICON.exe [HKCR\Installer\Products\CD46E6A3760AA8C07B490F9EDCD05A73] : CCC Help Russian -> C:\WINDOWS\Installer\{3A6E64DC-A067-0C8A-B794-F0E9CD0DA537}\ARPPRODUCTICON.exe [HKCR\Installer\Products\D139E7FE48CDB174D86B8A3385904547] : [HKCR\Installer\Products\D3BF824422967174BB4FE5A3944B27A4] : Plantronics Hub Software -> C:\WINDOWS\Installer\{4428FB3D-6922-4717-BBF4-5E3A49B4724A}\ProductIcon [HKCR\Installer\Products\D623568209A93E0CA2455CE5C9E39954] : CCC Help Turkish -> C:\WINDOWS\Installer\{2865326D-9A90-C0E3-2A54-C55E9C3E9945}\ARPPRODUCTICON.exe [HKCR\Installer\Products\D8228D065E610A9278AD0807FAD53EE5] : Catalyst Control Center Graphics Previews Common -> C:\WINDOWS\Installer\{60D8228D-16E5-29A0-87DA-8070AF5DE35E}\ARPPRODUCTICON.exe [HKCR\Installer\Products\D94B4C409D5482A4E91D4BC5DB998B7C] : System Requirements Lab for Intel [HKCR\Installer\Products\DACDC305E001A9F51FC5E0DD1A640017] : CCC Help Czech -> C:\WINDOWS\Installer\{503CDCAD-100E-5F9A-F15C-0EDDA1460071}\ARPPRODUCTICON.exe [HKCR\Installer\Products\DC35FD27B9468684D8BD14FB2406AE86] : AMD Settings - Branding -> C:\WINDOWS\Installer\{72DF53CD-649B-4868-8DDB-41BF4260EA68}\ARPPRODUCTICON.exe [HKCR\Installer\Products\DC38C9AC2172CEA2FB90F4BD683BF8DF] : CCC Help Greek -> C:\WINDOWS\Installer\{CA9C83CD-2712-2AEC-BF09-4FDB86B38FFD}\ARPPRODUCTICON.exe [HKCR\Installer\Products\E499DAA160A240F37ADDC8A89EE8BC23] : CCC Help Portuguese -> C:\WINDOWS\Installer\{1AAD994E-2A06-3F04-A7DD-8C8AE98ECB32}\ARPPRODUCTICON.exe [HKCR\Installer\Products\E577E9E993AD435BBDC4AA61ACF31D98] : CCC Help Finnish -> C:\WINDOWS\Installer\{9E9E775E-DA39-B534-DB4C-AA16CA3FD189}\ARPPRODUCTICON.exe [HKCR\Installer\Products\E717BE305FA795D1DCB9ACA7D6AB9AFA] : Catalyst Control Center Graphics Previews Common -> C:\WINDOWS\Installer\{03EB717E-7AF5-1D59-CD9B-CA7A6DBAA9AF}\ARPPRODUCTICON.exe [HKCR\Installer\Products\E9D27B5FC68D2004CB1F2CDEED1B6A16] : Adobe AIR [HKCR\Installer\Products\EA373B37C82276AD28CFB869816E2161] : CCC Help Dutch -> C:\WINDOWS\Installer\{73B373AE-228C-DA67-82FC-8B9618E61216}\ARPPRODUCTICON.exe [HKCR\Installer\Products\EB2C1E93BD6DF8062DF8CE1E348F853E] : CCC Help Greek -> C:\WINDOWS\Installer\{39E1C2BE-D6DB-608F-D28F-ECE143F858E3}\ARPPRODUCTICON.exe [HKCR\Installer\Products\ED874C64183C00246972D00A525B55BE] : Intel(R) Chipset Device Software [HKCR\Installer\Products\EE0216325C0D909E91C1CC23B15162A9] : CCC Help Swedish -> C:\WINDOWS\Installer\{236120EE-D0C5-E909-191C-CC321B15269A}\ARPPRODUCTICON.exe [HKCR\Installer\Products\F0C9304F1C4E5095E9D7DD8ADE3E56CB] : Java(TM) SE Development Kit 11.0.1 (64-bit) -> C:\Program Files\Java\jdk-11.0.1\\bin\java.exe [HKCR\Installer\Products\F2654A091A4D56B409D6142F63FC9620] : Path of Exile [HKCR\Installer\Products\F60730A4A66673047777F5728467D401] : Java Auto Updater [HKCR\Installer\Products\F7C9641D2AA71961071746AB5AFD5FE8] : CCC Help French -> C:\WINDOWS\Installer\{D1469C7F-7AA2-1691-7071-64BAA5DFF58E}\ARPPRODUCTICON.exe [HKCR\Installer\Products\F8385C66458B55A4986E6A3178744AFD] : Epic Games Launcher Prerequisites (x64) -> C:\WINDOWS\Installer\{66C5838F-B854-4A55-89E6-A6138747A4DF}\UnrealEngineLauncher.ico ---------- | Drives ---------- | MBR 64 bits not supported by MBR.exe, Dump : C:\QuickDiag\MBR.Bin ---------- | 20 LastEventLog Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.17763.1, horodatage : 0x6fe3727f Nom du module défaillant : twinapi.appcore.dll, version : 10.0.17763.292, horodatage : 0x270a22eb Code d’exception : 0xc000027b Décalage d’erreur : 0x00000000000bd588 ID du processus défaillant : 0x2a9c Heure de début de l’application défaillante : 0x01d57ce784960e3b Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : 94239f48-80a1-4633-8aed-2a7fabf70f3d Nom complet du package défaillant : Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x ------------ Impossible de lire les données de performance pour le service Serveur. Les quatre premiers octets (DWORD) de la section Data contiennent le code d’état, les quatre octets suivants contiennent l’état d’IOSB et les quatre octets suivants contiennent les informations d’IOSB. ------------ Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.17763.1, horodatage : 0x6fe3727f Nom du module défaillant : biwinrt.dll, version : 10.0.17763.1, horodatage : 0xd28070f9 Code d’exception : 0xc000027b Décalage d’erreur : 0x0000000000015514 ID du processus défaillant : 0x2a9c Heure de début de l’application défaillante : 0x01d57ce784960e3b Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\biwinrt.dll ID de rapport : 0dd411ed-ae4f-4216-af08-bc2b717f07d3 Nom complet du package défaillant : Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x ------------ Nom de l’application défaillante CsrBtOBEXService.exe, version : 2.1.63.0, horodatage : 0x4f68683b Nom du module défaillant : CsrBtOBEXService.exe, version : 2.1.63.0, horodatage : 0x4f68683b Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000006f58 ID du processus défaillant : 0x2ea4 Heure de début de l’application défaillante : 0x01d57c6fae817429 Chemin d’accès de l’application défaillante : C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe Chemin d’accès du module défaillant: C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe ID de rapport : 8839f5db-2393-4a70-9142-513c776eb818 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.17763.1, horodatage : 0x6fe3727f Nom du module défaillant : twinapi.appcore.dll, version : 10.0.17763.292, horodatage : 0x270a22eb Code d’exception : 0xc000027b Décalage d’erreur : 0x00000000000bd588 ID du processus défaillant : 0x2010 Heure de début de l’application défaillante : 0x01d57c6fa6a5cea2 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : 133cb0e2-3019-439b-9252-7d17b75416f8 Nom complet du package défaillant : Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x ------------ Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.17763.1, horodatage : 0x6fe3727f Nom du module défaillant : biwinrt.dll, version : 10.0.17763.1, horodatage : 0xd28070f9 Code d’exception : 0xc000027b Décalage d’erreur : 0x0000000000015514 ID du processus défaillant : 0x2010 Heure de début de l’application défaillante : 0x01d57c6fa6a5cea2 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\biwinrt.dll ID de rapport : 3b16ceb7-0702-435b-9975-bef980d5f3fb Nom complet du package défaillant : Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x ------------ Nom de l’application défaillante CsrBtOBEXService.exe, version : 2.1.63.0, horodatage : 0x4f68683b Nom du module défaillant : CsrBtOBEXService.exe, version : 2.1.63.0, horodatage : 0x4f68683b Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000006f58 ID du processus défaillant : 0xfd8 Heure de début de l’application défaillante : 0x01d57c6dc1f646ab Chemin d’accès de l’application défaillante : C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe Chemin d’accès du module défaillant: C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe ID de rapport : e38bfd76-60c1-414e-88af-a5e4cf8aaae5 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.17763.1, horodatage : 0x6fe3727f Nom du module défaillant : biwinrt.dll, version : 10.0.17763.1, horodatage : 0xd28070f9 Code d’exception : 0xc000027b Décalage d’erreur : 0x0000000000015514 ID du processus défaillant : 0xd00 Heure de début de l’application défaillante : 0x01d57c6ddcbf6269 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\biwinrt.dll ID de rapport : aa875fbc-7c0c-4ad2-926b-e01daf908dc4 Nom complet du package défaillant : Microsoft.Windows.Cortana_1.11.6.17763_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : CortanaUI ------------ Nom de l’application défaillante ShellExperienceHost.exe, version : 10.0.17763.557, horodatage : 0x5cfa2547 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.17763.292, horodatage : 0x270a22eb Code d’exception : 0xc000027b Décalage d’erreur : 0x00000000000bd588 ID du processus défaillant : 0x23dc Heure de début de l’application défaillante : 0x01d57c6e280793f3 Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : b857e3d7-34c5-4258-bbb6-74d8b3507c73 Nom complet du package défaillant : Microsoft.Windows.ShellExperienceHost_10.0.17763.1_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App ------------ Nom de l’application défaillante ShellExperienceHost.exe, version : 10.0.17763.557, horodatage : 0x5cfa2547 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.17763.292, horodatage : 0x270a22eb Code d’exception : 0xc000027b Décalage d’erreur : 0x00000000000bd588 ID du processus défaillant : 0x1d5c Heure de début de l’application défaillante : 0x01d57c6dd4534e40 Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : e38f7328-0bf0-4ea9-8f04-4f460120eea1 Nom complet du package défaillant : Microsoft.Windows.ShellExperienceHost_10.0.17763.1_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App ------------ Impossible de lire les données de performance pour le service Serveur. Les quatre premiers octets (DWORD) de la section Data contiennent le code d’état, les quatre octets suivants contiennent l’état d’IOSB et les quatre octets suivants contiennent les informations d’IOSB. ------------ Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.17763.1, horodatage : 0x6fe3727f Nom du module défaillant : biwinrt.dll, version : 10.0.17763.1, horodatage : 0xd28070f9 Code d’exception : 0xc000027b Décalage d’erreur : 0x0000000000015514 ID du processus défaillant : 0xd00 Heure de début de l’application défaillante : 0x01d57c6ddcbf6269 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\biwinrt.dll ID de rapport : d86e1ea3-b39a-4e54-a2c0-c1cd3178c5d1 Nom complet du package défaillant : Microsoft.Windows.Cortana_1.11.6.17763_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : CortanaUI ------------ Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.17763.1, horodatage : 0x6fe3727f Nom du module défaillant : twinapi.appcore.dll, version : 10.0.17763.292, horodatage : 0x270a22eb Code d’exception : 0xc000027b Décalage d’erreur : 0x00000000000bd588 ID du processus défaillant : 0x1904 Heure de début de l’application défaillante : 0x01d57c6dd65fa039 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : cf90872a-74a6-4062-8f6a-f9af6541fcd6 Nom complet du package défaillant : Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x ------------ Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.17763.1, horodatage : 0x6fe3727f Nom du module défaillant : biwinrt.dll, version : 10.0.17763.1, horodatage : 0xd28070f9 Code d’exception : 0xc000027b Décalage d’erreur : 0x0000000000015514 ID du processus défaillant : 0x1904 Heure de début de l’application défaillante : 0x01d57c6dd65fa039 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\biwinrt.dll ID de rapport : df6422a0-8eaf-4978-ab22-9c14fb51a312 Nom complet du package défaillant : Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x ------------ Nom de l’application défaillante CsrBtOBEXService.exe, version : 2.1.63.0, horodatage : 0x4f68683b Nom du module défaillant : CsrBtOBEXService.exe, version : 2.1.63.0, horodatage : 0x4f68683b Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000006f58 ID du processus défaillant : 0x14a0 Heure de début de l’application défaillante : 0x01d57c6738b8a226 Chemin d’accès de l’application défaillante : C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe Chemin d’accès du module défaillant: C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe ID de rapport : 273e7065-424d-4ead-8e20-ec13b2803c54 Nom complet du package défaillant : ID de l’application relative au package défaillant : ------------ Impossible d’ouvrir l’objet de performance pour le service Serveur. Les quatre premiers octets (DWORD) de la section Data contiennent le code d’état. ------------ Impossible d’ouvrir l’objet de performance pour le service Serveur. Les quatre premiers octets (DWORD) de la section Data contiennent le code d’état. ------------ Impossible d’ouvrir l’objet de performance pour le service Serveur. Les quatre premiers octets (DWORD) de la section Data contiennent le code d’état. ------------ Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.17763.1, horodatage : 0x6fe3727f Nom du module défaillant : twinapi.appcore.dll, version : 10.0.17763.292, horodatage : 0x270a22eb Code d’exception : 0xc000027b Décalage d’erreur : 0x00000000000bd588 ID du processus défaillant : 0x1798 Heure de début de l’application défaillante : 0x01d57c3a63c4b821 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : 63c694a8-7a4f-45bf-aac7-e4ed12da3447 Nom complet du package défaillant : Microsoft.People_10.1902.633.0_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : x4c7a3b7dy2188y46d4ya362y19ac5a5805e5x ------------ ----------( EOF)---------- - 7228 | 12:05:56